pc[.]globalprimeus[.]cc
“Global prime”
证据摘要
PhishDestroy identifies pc.globalprimeus.cc as a domain actively involved in social engineering phishing, specifically targeting users with deceptive tactics to extract sensitive information or credentials. The domain does not appear to leverage a known brand or drainer kit at this stage, suggesting a possible opportunistic campaign. The site’s structure and content remain under analysis to determine the exact lure mechanism, such as fake login portals or fraudulent payment pages. Given the domain’s recent creation and lack of association with established threat actors, this represents a developing but high-priority threat vector requiring immediate scrutiny. This domain was flagged by Google Safe Browsing with a SOCIAL_ENGINEERING classification, indicating an attempt to deceive users into performing actions that compromise their security. Technical indicators reveal a VirusTotal detection score of 10 out of 95 engines, suggesting the domain has evaded automated detection systems to date. The domain resolves to IP address 104.21.42.252 and operates under an SSL certificate issued by Google Trust Services, which may enhance its perceived legitimacy. Registered through Gname.com Pte. Ltd. on December 29, 2025, the domain is exceptionally new, increasing the likelihood of rapid, unchecked abuse. Despite zero current blocklist detections, the combination of recent registration, SOCIAL_ENGINEERING flagging, and reliance on a reputable SSL issuer underscores a sophisticated evasion strategy. As of this report, the domain remains active and under investigation, with no confirmed takedown or remediation actions observed. The risk level is currently classified as under_investigation, pending further forensic analysis and threat intelligence correlation. Users and organizations are strongly advised to block or monitor traffic to pc.globalprimeus.cc, particularly within corporate or financial transaction environments. Immediate reporting to hosting providers, domain registrars, and security teams is recommended to accelerate mitigation. While the current risk is elevated due to active status and low detection coverage, proactive blocking and user awareness campaigns can significantly reduce exposure to this emerging threat.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控