plrl-claim[.]com
“Even geduld...”
Kaydedilmiş tespit
Gizleme uyarısı
- Gizleme türü
content_divergence- Gizleme puanı
- 1/6
PhishDestroy identifies plrl-claim.com as an active crypto drainer domain under investigation for malicious activity. This domain is currently operational and poses a significant risk to individuals and organizations engaging with it. No specific brand impersonation has been confirmed at this stage, but the domain's infrastructure suggests a targeted approach to cryptocurrency theft through deceptive claims and fraudulent transactions.
This domain was flagged by 4 of 95 VirusTotal vendors, indicating that traditional detection mechanisms have not yet caught up with its evolving tactics. Registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, plrl-claim.com resolves to IP address 188.114.96.3 and was created on March 29, 2026. The domain's SSL certificate, issued by Let's Encrypt, adds a layer of legitimacy that may deceive unsuspecting users. With no current blocklist presence and no initial detections, this domain represents an emerging and unchecked threat in the cryptocurrency space. The seed identifier 67847d further confirms its association with a known malicious campaign infrastructure.
Given the domain's active status and the absence of widespread detection, immediate action is critical to mitigate potential losses. Organizations and individuals should block plrl-claim.com at the network perimeter using DNS filtering or firewalls. Employees and users should be warned against interacting with the domain, especially any links or attachments associated with it. Additionally, monitoring for connections to IP 188.114.96.3 or similar infrastructure may help identify further related threats. Security teams are advised to update threat intelligence feeds with this domain and its indicators to enhance proactive detection. The unique seed 67847d should also be cross-referenced in future investigations to track the evolution of this campaign and its infrastructure.
Gönderilen rapor kaydı
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260407-6D2C62- Yakalanan sayfa başlığı
- Just a moment...
- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Ağ Güvenliği İstihbaratı Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | plrl-claim.com |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 kaynak · 10.08.2026 tarihinde eşitlendi
Tespit zaman çizelgesi
-
Erişilebilirlik
stage4.timeline.first_value
f93a11f87e4d -
Erişilebilirlik
stage4.timeline.transition
8a25e63a7b9c -
Erişilebilirlik
stage4.timeline.transition
f6fabdd21007 -
Erişilebilirlik
stage4.timeline.transition
feacd04b74d5 -
Erişilebilirlik
stage4.timeline.transition
f52d526b76a1 -
Erişilebilirlik
stage4.timeline.transition
d25cf9d12d54 -
Erişilebilirlik
stage4.timeline.transition
f3f027f918df -
Erişilebilirlik
stage4.timeline.transition
8777d90c6e51 -
Erişilebilirlik
stage4.timeline.transition
6dfe9145995c -
Erişilebilirlik
stage4.timeline.transition
61fa1fd5f38b
Tümünü göster (6)
-
Erişilebilirlik
stage4.timeline.transition
641ed81dc4d5 -
Erişilebilirlik
stage4.timeline.transition
8c09c70fa288 -
Erişilebilirlik
stage4.timeline.transition
184595a60532 -
Erişilebilirlik
stage4.timeline.transition
fa94fa197d27 -
Erişilebilirlik
stage4.timeline.transition
d0b7046e8c2f -
Erişilebilirlik
stage4.timeline.transition
32af118cd7c2
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Adli İstihbarat
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of plrl-claim.com · checked Apr 7, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin