earn-plasma-front[.]pages[.]dev
“Suspected phishing site | Cloudflare”
earn-plasma-front.pages.dev — Não verificado. Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 2/94 (G-Data, Sophos); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies the active phishing domain earn-plasma-front.pages.dev as luring victims with false plasma donation rewards. This fraudulent site poses as a plasma-earning platform while harvesting personal and banking data. Visitors are prompted to enter payment card information under the guise of cashing out earnings, risking direct financial theft. The page uses Cloudflare’s infrastructure (AS13335) and a Google Trust Services SSL certificate to appear legitimate, but no plasma reward programs operate through Cloudflare Pages subdomains. This setup is a hallmark of modern credential-harvesting campaigns targeting health-conscious or financially vulnerable users. Early detection remains critical, as current antivirus detection stands at 0 detections out of 95 scanners on VirusTotal as of the latest scan. This domain was flagged by PhishDestroy after being registered via Cloudflare, Inc. on April 2, 2025. The site resolves to IP 188.114.96.3, hosted within Cloudflare’s data center network. Despite its recent creation, the domain has already been weaponized with a valid SSL certificate issued by Google Trust Services, increasing its credibility among unsuspecting users. The complete lack of detections (6/95) suggests it is either very new or employs evasion tactics such as rapid domain rotation or cloaking based on geolocation or user-agent. Technical analysis confirms the use of Cloudflare Pages, a legitimate service abused to deploy phishing kits quickly and anonymously. The domain name itself mimics legitimate plasma programs, using a hyphenated prefix ‘earn-plasma-front’ to appear official while avoiding trademark violations. If you visited earn-plasma-front.pages.dev, stop using any payment cards entered and contact your bank immediately to report potential fraud. Do not log in or provide additional personal information. Clear your browser cache and cookies, then run a full antivirus scan. Report the domain to your bank, local cybercrime units, and PhishDestroy through the official reporting portal. Monitor bank statements for unauthorized transactions for at least 90 days. Consider enabling transaction alerts and freezing less-used cards. This domain is under active investigation, and takedown efforts are ongoing. Share this warning with others who may have seen or clicked the link.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência forense
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of earn-plasma-front.pages.dev · checked Apr 4, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo