playcomla.com.ar

playcomla.com.ar displays a fake Chrome security alert that instructs visitors to run keyboard commands leading to an executable download.

High Risk
Tech Support Scam
Captured page preview of playcomla.com.ar

At a glance

Antivirus · registration · identity
Antivirus detections
2 flagged
1 malicious · 1 suspicious
Netcraft
Domain registration
Jan 20, 2011Registered
16 years oldAt scan time
Operator identity
Claimed Only
Contact details are present but not independently verified
Verified factsSaved with this scan
  1. 1 engine classified the URL as malicious and 1 as suspicious; 57 returned harmless, 33 returned undetected, and 0 returned no usable result.
  2. The domain was registered Jan 21, 2011 and was 16 years old at scan time.
  3. Operator identity: Claimed Only. Contact details are present but not independently verified
  4. Google Safe Browsing returned no listed threat categories for this address at scan time.
  5. The site presented a valid TLSv1.3 certificate at scan time.

Intelligence

The domain playcomla.com.ar, registered in 2011, hosts a page titled "Chrome Security Update Required | Critical Vulnerability Found" that uses official-looking Chrome branding and a reCAPTCHA step to pressure visitors into executing commands that install malicious software.

Evidence Map

Reputation
Concern

One or more reputation sources recorded a concern

Identity
Limited

Contact details are present but not independently verified

Behavior
Limited

Only partial behavior evidence was available

History
Observed

The domain was registered Jan 21, 2011 and was 16 years old at scan time.

Risk Factors
  • 1Impersonates Google Chrome branding and uses a fabricated CVE to create urgency
  • 2Directs users to run Win+R then CTRL+V commands that lead to executable download
  • 3One antivirus engine flagged the URL as malicious
Positive Signals
  • 1Domain registered in 2011 (16 years old at scan time)
  • 2Valid TLSv1.3 certificate presented
  • 3Hosting IP has zero abuse reports

Observed visitor journey

Visitors land directly on http://playcomla.com.ar/ and immediately see a full-page alert styled with Chrome branding. The headline claims a critical vulnerability (CVE-2024-0519) exists in the browser and demands an immediate update.

The page lists three numbered steps: press Win+R, press CTRL+V, then press Enter. These instructions are presented as the required verification process before the update can proceed.

Claims and pressure tactics

High-pressure language appears throughout: "Update immediately," "Critical Security Alert," and statistics such as "5.6B+ Users Protected" and "99.9% Malware Blocked." A prominent "Update Chrome Now" button is shown, which the page indicates will trigger the download of an executable.

Technical presentation

The site presents a valid TLS certificate and lists a phone number (2024-0519) but provides no email address or postal address. No login form or countdown timer is present; the sole mechanism is the keyboard-instruction sequence leading to the download prompt.

Security signals

One antivirus engine flagged the URL as malicious and another as suspicious. The hosting IP shows no prior abuse reports, and the domain itself is 16 years old, yet the page content is a clear social-engineering attempt to distribute malware.

Website Preview

Captured page preview of playcomla.com.ar
Visual findings

This page is a social engineering attempt designed to trick users into downloading malicious software by masquerading as an official Google Chrome security update notification.

  1. 1Impersonates Google Chrome branding to create a fake security alert
  2. 2Uses high-pressure language demanding an immediate browser update
  3. 3Prompts user to download an executable file via an 'Update Chrome Now' button
  4. 4References a specific CVE to add false technical credibility to the scam
  5. 5Displays a generic, alarmist 'Critical Security Alert' badge

Web Research

Independent public research was unavailable for this scan.

Threat Detection

Antivirus results, browser warnings, isolated page observations, and the threat pattern identified in this report.

Antivirus distribution
Recorded engine classifications, not a blanket clean bill
92 engines
Malicious1
Suspicious1
Harmless57
Undetected33
No result0
Antivirus consensus

Antivirus engine results

Result date Jul 18, 2026
Detection matrix
2 engines flagged this URL

This scan saved classifications from an antivirus network of 92 engines. Each malicious or suspicious classification is listed below by engine name and should be weighed with the rest of the report.

1Malicious1Suspicious57Harmless33Undetected0No result92Engines
0
of 92
Netcraft
Malicious· malicious
Gridinsoft
Suspicious· suspicious

2 antivirus engines flagged this URL. A single classification is not consensus by itself. Review its label together with the page, identity, behavior, and history evidence shown in this report.

Threat pattern
Tech Support Scam
Threat tags
tech support scamphishingmalware
Scam tags
scareware
Top reasons

Evidence behind this threat profile

3 reasons
  1. 1Impersonates Google Chrome branding and uses a fabricated CVE to create urgency
  2. 2Directs users to run Win+R then CTRL+V commands that lead to executable download
  3. 3One antivirus engine flagged the URL as malicious
Scam-Type Likelihood

2 of 21 categories showed signals

This profile separates the site's primary threat from other patterns supported by the saved page evidence, public research, and security findings.

Top match: tech support scam
tech support scam
High likelihood
95/100
  • Impersonates Google Chrome branding and uses a fabricated CVE to create urgency
  • Directs users to run Win+R then CTRL+V commands that lead to executable download
  • One antivirus engine flagged the URL as malicious
  • AI analyst tagged this as a tech-support scam.
Scareware & Fake Pop-ups
High likelihood
80/100
  • Tagged as scareware / adware / malvertising.
  • Scareware / adware / notification-spam language in the tags.

Technical Details

Identity, domain, infrastructure, and connection facts saved with this scan.

July 20, 2026 at 7:02 AM UTC

Identity

6 facts
Operator
Claimed Only
On-domain email
Not observed
Other email
Not observed
Phone
2 numbers
Postal address
Not observed
Social profiles
Not observed

Domain

8 facts
Domain age
16 years old
Registered
Jan 20, 2011
Registrar
Unavailable
Expires
Mar 1, 2027
WHOIS updated
Aug 30, 2016
Registrant
Unavailable
Registration country
Unavailable
WHOIS privacy
Not observed

Infrastructure

14 facts
HTTPS
Valid certificate
TLS protocol
TLSv1.3
Certificate issuer
Let's Encrypt · YR2
Certificate subject
playcomla.com.ar
Certificate valid from
Jul 8, 2026
Certificate valid to
Oct 6, 2026
Network address
186.148.232.40
ASN
Unavailable
Hosting organization
LOS AMORES S.A.
Country
AR
Server
nginx
Site platform
Unavailable
IP reputation
0% confidence · 0 reports
Tor exit node
No

Connections

13 facts
Scan scope
Domain
Destination host
playcomla.com.ar
Redirects
1
Cross-domain redirect
No
Redirect status codes
301 → 200
Lookalike characters
Not observed
Internationalized domain
No
Page response
200
Observation coverage
Unavailable
Extracted links
Unavailable
Unique IPs contacted
Unavailable
Countries contacted
Unavailable
Referenced domains
2

What to do

1
Before interacting
Do not call or install remote-access software

Do not follow any on-screen instructions or run the suggested keyboard commands. Close the page immediately and scan your device with up-to-date security software if you have already interacted with the prompts.

2
If you already interacted

If you paid, contact your bank or payment provider immediately and preserve receipts and messages. If you shared personal information, monitor the affected accounts and change any reused passwords through the official service.

Final Verdict

Do not call or install remote-access software

Why this verdict

The site is a tech support scam that impersonates a Google Chrome security update page, references CVE-2024-0519, and directs users through Win+R and CTRL+V steps to download malware.

Recommendation

Do not follow any on-screen instructions or run the suggested keyboard commands. Close the page immediately and scan your device with up-to-date security software if you have already interacted with the prompts.

Key evidence

  1. 1Impersonates Google Chrome branding and uses a fabricated CVE to create urgency
  2. 2Directs users to run Win+R then CTRL+V commands that lead to executable download
  3. 3One antivirus engine flagged the URL as malicious
Evidence: moderateScope: DomainFresh scan: July 20, 2026 at 7:02 AM UTC

Safety FAQ

Is playcomla.com.ar safe to use?+

The site is a tech support scam that impersonates a Google Chrome security update page, references CVE-2024-0519, and directs users through Win+R and CTRL+V steps to download malware.

What should I do about playcomla.com.ar?+

Do not follow any on-screen instructions or run the suggested keyboard commands. Close the page immediately and scan your device with up-to-date security software if you have already interacted with the prompts.

How old is playcomla.com.ar?+

playcomla.com.ar is 16 years old and was registered jan 21, 2011.

What if I already interacted with playcomla.com.ar?+

If you paid, contact your bank or payment provider immediately and preserve receipts and messages. If you shared personal information, monitor the affected accounts and change any reused passwords through the official service.

When was this report updated?+

This report reflects the scan completed July 20, 2026 at 7:02 AM UTC.