https://pmivnote.com/privnote/?utm_source=google&utm_medium=cpc&utm_campaign=g&utm_content=799034802153&utm_term=privnote&gad_source=1&gad_campaignid=23423181531&gbraid=0AAAABCM-2EyxecLGdr34RW0TyweEwhFmp&gclid=EAIaIQobChMIwO2P6q6IkwMV0pWDBx2xVQ1LEAAYAiAAEgL85_D_BwE
178.212.13.26 · Hostland LTD
St Petersburg, Russia
0 days ⚠
200 · 42.8s
Valid· R13, Let's Encrypt, US
COMPLETED
Domain Intelligence: pmivnote.com
Scanned 3 times since Mar 5, 2026, 09:01 AM UTC
Linked Phishing Report
This scan is attached to a vendor submission report
Brand
Privnote
Vendors
27/27
Status
completed
Privnote Clone Kit
privnote-clone-kit
Directives: skipAi, skipUnblocker, skipMobileVariant
Cryptocurrency · 4/5/2026
This page is a clone of Privnote built from a known phishing kit. It reproduces the exact Privnote UI structure and branding on a non-official domain. These clones are used for cryptocurrency theft — they intercept or replace wallet addresses in notes that victims share, sometimes exfiltrating data via Telegram webhooks. The domain is not affiliated with the legitimate privnote.com.
This domain serves a known Privnote clone kit identified by its HTML structure and branding assets. These kits are deployed across many typosquat domains and are used for cryptocurrency theft — typically by intercepting or replacing wallet addresses in shared notes. The kit is not affiliated with the legitimate privnote.com service. This is a confirmed malicious deployment that warrants immediate domain suspension and hosting takedown.
Suspend Domain