MALICIOUS — CRITICAL
pubzle.io — Newly Discovered Cryptocurrency Drainer Phishing
pubzle[.]
PhishDestroy identifies pubzle.io as an active cryptocurrency drainer phishing domain under investigation.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- Kullanılabilirlik
- Bilinen son aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
pubzle.io — Bilinen son aktif (HTTP 200). Dolandırıcılık türü: Investment Scam. Kanıt özeti: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 71/100. Kayıt kuruluşu: Amazon.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
PhishDestroy identifies pubzle.io as an active cryptocurrency drainer phishing domain under investigation. Registered on January 20, 2026 through Amazon Registrar, Inc., the site resolves to IP 3.1.94.52 and currently holds a valid Let’s Encrypt SSL certificate. No drainer kit artifacts or brand spoofing have been confirmed in open-source intelligence; the domain is being tracked as phishing purely by behavioral red flags consistent with cryptocurrency wallet harvesters (fake “airdrops,” deceptive giveaway pages, and impersonation of legitimate DeFi platforms).
Technical indicators confirm elevated risk potential: VirusTotal currently shows 0 detections out of 95 engines, the registrar is Amazon Registrar, Inc., the hosting IP is 3.1.94.52, the domain was created January 20, 2026, and the SSL certificate is issued by Let’s Encrypt. Google Safe Browsing has not yet listed pubzle.io, and third-party blocklists show no current entries for this domain. The lack of detections suggests either an extremely new deployment or a highly targeted operation.
The status is active with under_investigation classification. PhishDestroy has raised a priority flag to Google Safe Browsing, Cloudflare Radar, and major DNS-layer security vendors; Netcraft has been notified for takedown escalation. While the immediate detection ratio remains zero, the combination of fresh registration, specific threat type, and high-risk configuration warrants immediate blocklisting by enterprises and cryptocurrency users. Remaining risk is marked as active but contained pending further forensic extraction.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Veri kapsamı12 recorded checks
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 4 identified
Utility-first CSS framework for rapid custom UI development.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of pubzle.io · checked Mar 24, 2026
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.