plancknetwork-tge[.]pages[.]dev
“Planck”
证据摘要
Technical Threat Report: plancknetwork-tge.pages.dev
This domain presents as a site titled "Planck," which is likely an attempt to impersonate the Planck Network cryptocurrency project or a related token generation event (TGE). The site poses a threat as a potential phishing or scam page, designed to deceive users into interacting with a fraudulent platform for cryptocurrency theft or credential harvesting. No specific brand impersonation is confirmed from the provided data, but the name and context suggest a crypto-related scheme.
Technical evidence from VirusTotal shows 5 out of 95 vendors flagged the domain as malicious, with detections from ADMINUSLabs, alphaMountain.ai, CyRadar, Fortinet, and Sophos. The domain is registered with Cloudflare, Inc., and hosted on IP address 172.66.44.74 in the United States under AS13335 Cloudflare, Inc. It was created on 2025-11-11 and has no SSL certificate. The domain is listed on 2 blocklists.
The site is currently down or offline, indicating it may have been taken down or is inactive. The DOM risk score of 68 suggests a high risk of malicious activity. Users should avoid any interaction with this domain due to the confirmed detections and lack of security measures.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Nextron YARA rules | plancknetwork-tge.pages.dev/assets/secure.php?req=ping |
malware | PHP webshell obfuscated by encoding of mixed hex and dec |
| Nextron YARA rules | plancknetwork-tge.pages.dev/assets/secure.php?req=ping |
malware | Known PHP Webshells which contain unique strings, lousy rule for low hanging fruits. Most are catched by other rules in here but maybe these catch different ver |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控