pc[.]plussmartsfams[.]cc
“Puprime”
pc.plussmartsfams.cc — Контент недоступний (HTTP 502). Зведення доказів: VirusTotal 4/94 (alphaMountain.ai, Forcepoint ThreatSeeker, LevelBlue, SOCRadar); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 68/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies pc.plussmartsfams.cc as a phishing domain designed to masquerade as a family-focused survey platform, potentially harvesting sensitive data under false pretenses. This domain was flagged during routine threat intelligence monitoring and demonstrates low initial detection rates despite its malicious intent. The domain resolves to IP 104.21.62.100, utilizes a Let's Encrypt SSL certificate to appear legitimate, and was registered through Gname.com Pte. Ltd. on March 11, 2026. This domain poses a specific threat as a generic phishing gateway, potentially luring users with promises of rewards or exclusive content related to family surveys. The threat actor behind this campaign may be leveraging social engineering tactics to trick users into divulging personal information, payment details, or login credentials under the guise of participation or verification. Given the domain's lack of detection with 4/95 VirusTotal flags, it indicates a newly active or stealthily configured threat that has not yet been widely recognized by security vendors. The fresh registration date and the use of a reputable SSL certificate further enhance its deceptive credibility, making it harder for average users to identify the fraudulent nature of the site. Victims who have interacted with pc.plussmartsfams.cc should immediately cease all communication with the domain and avoid entering any sensitive information. Users are advised to check their accounts for any unauthorized transactions or suspicious activity, particularly if they entered payment details or login credentials. System scans using updated antivirus software are recommended to detect any potential malware or credential-stealing payloads. Organizations should consider blocking the domain at the network level and monitoring for any outbound connections to the IP address 104.21.62.100. Additionally, users are encouraged to report the domain to their IT security teams or relevant authorities to aid in ongoing investigations.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260406-DC75EE Recipient: complaint@gname.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога