Security Scan Report: pldnf.top

Submitted: Sep 26, 2026, 2:29:10 PMCompleted: Sep 26, 2026, 2:29:45 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

Fake Indian Income Tax penalty notice on pldnf.top impersonating the Government of India; analyst-vetted malware kit and HIGH YARA hit confirm its download button delivers malware. Do not download or interact.

Risk Factors (6)
Brand impersonation of a government tax authority on a non-official domain
Known malicious phishing/malware kit identified in page content
High-severity YARA malware pattern match on the HTML body
Deceptive document download button delivering a malware payload
Artificial 72-hour legal deadline and fake penalty notice used as social engineering pressure
Multiple HIGH network IDS alerts for hostile *.top domain traffic
Domain age information unavailable

Details

Page Title

कर दंड सूचना - भारत सरकार

Scan Type

public

Domain Name Analysis

You're looking at domain 'pldnf.top' on the .top top-level domain while skipping any subdomain. The registrable portion 'pldnf' spans 5 characters split between zero vowels and 5 consonants. Breaking it apart gives 3 words: pl, d, nf. Expect 2 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://pldnf.top/

Page Load Overview

1.44s
Total Load Time
46 KB
Total Size

Language Analysis

Primary Language

🇮🇳Hindi
Code: hi
Confidence:80%
Script:Devanagari
Direction:ltr

Detection Details

HTML Lang Attribute:hi
Text Length:1,447 chars
Detector Agreement:50%

Website Classification

Primary Category

government public service100% confidence
Type: static
Method: ml+structural

All Detected Categories

government public service
100%
social media network
99%
download file sharing
99%
blog personal website
99%
adult content
99%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
345.197.239.24Seychelles
AS4907BGPNET PTE. LTD.
2104.16.80.73Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2104.16.79.73Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
73--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10E52525EABB321257817B46837EA1B7332A49123C60BC9293EDC6398CF85DE0599335C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:QcwusNVU+hQhCv8s2VqXlXTQiD8VyJmLOcmMy6rjTunQrPfzu89:GO+6syLO2unQbfzu89

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:13790:jUpYAgAACT+iFISOlpCPQM4BFDCiPgouQQQ7iRENInAAQkFFQJhA4cCp8AIYCKgBBcIByAkCSRGEYAIAAHN+RCgIHT0hH8AU

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:bebcbce6f6a6febb
Perceptual Hash:d799cc32cc3166cc
Difference Hash:6a68680c2c4c4863
Wavelet Hash:f8fcfcc404043c39
Color Hash:#9179d2

Other Hashes

Crop Resistant:6a68680c2c4c4863

Scan History

Scan history not available

Unable to load historical scan data