playcomla. com. ar
playcomla.com.ar displays a fake Chrome security alert that instructs visitors to run keyboard commands leading to an executable download.
At a glance
Antivirus · registration · identity- 1 engine classified the URL as malicious and 1 as suspicious; 57 returned harmless, 33 returned undetected, and 0 returned no usable result.
- The domain was registered Jan 21, 2011 and was 16 years old at scan time.
- Operator identity: Claimed Only. Contact details are present but not independently verified
- Google Safe Browsing returned no listed threat categories for this address at scan time.
- The site presented a valid TLSv1.3 certificate at scan time.
Intelligence
The domain playcomla.com.ar, registered in 2011, hosts a page titled "Chrome Security Update Required | Critical Vulnerability Found" that uses official-looking Chrome branding and a reCAPTCHA step to pressure visitors into executing commands that install malicious software.
Evidence Map
One or more reputation sources recorded a concern
Contact details are present but not independently verified
Only partial behavior evidence was available
The domain was registered Jan 21, 2011 and was 16 years old at scan time.
- 1Impersonates Google Chrome branding and uses a fabricated CVE to create urgency
- 2Directs users to run Win+R then CTRL+V commands that lead to executable download
- 3One antivirus engine flagged the URL as malicious
- 1Domain registered in 2011 (16 years old at scan time)
- 2Valid TLSv1.3 certificate presented
- 3Hosting IP has zero abuse reports
Observed visitor journey
Visitors land directly on http://playcomla.com.ar/ and immediately see a full-page alert styled with Chrome branding. The headline claims a critical vulnerability (CVE-2024-0519) exists in the browser and demands an immediate update.
The page lists three numbered steps: press Win+R, press CTRL+V, then press Enter. These instructions are presented as the required verification process before the update can proceed.
Claims and pressure tactics
High-pressure language appears throughout: "Update immediately," "Critical Security Alert," and statistics such as "5.6B+ Users Protected" and "99.9% Malware Blocked." A prominent "Update Chrome Now" button is shown, which the page indicates will trigger the download of an executable.
Technical presentation
The site presents a valid TLS certificate and lists a phone number (2024-0519) but provides no email address or postal address. No login form or countdown timer is present; the sole mechanism is the keyboard-instruction sequence leading to the download prompt.
Security signals
One antivirus engine flagged the URL as malicious and another as suspicious. The hosting IP shows no prior abuse reports, and the domain itself is 16 years old, yet the page content is a clear social-engineering attempt to distribute malware.
Website Preview

This page is a social engineering attempt designed to trick users into downloading malicious software by masquerading as an official Google Chrome security update notification.
- 1Impersonates Google Chrome branding to create a fake security alert
- 2Uses high-pressure language demanding an immediate browser update
- 3Prompts user to download an executable file via an 'Update Chrome Now' button
- 4References a specific CVE to add false technical credibility to the scam
- 5Displays a generic, alarmist 'Critical Security Alert' badge
Web Research
Threat Detection
Antivirus results, browser warnings, isolated page observations, and the threat pattern identified in this report.
Antivirus engine results
Evidence behind this threat profile
- 1Impersonates Google Chrome branding and uses a fabricated CVE to create urgency
- 2Directs users to run Win+R then CTRL+V commands that lead to executable download
- 3One antivirus engine flagged the URL as malicious
2 of 21 categories showed signals
This profile separates the site's primary threat from other patterns supported by the saved page evidence, public research, and security findings.
- Impersonates Google Chrome branding and uses a fabricated CVE to create urgency
- Directs users to run Win+R then CTRL+V commands that lead to executable download
- One antivirus engine flagged the URL as malicious
- AI analyst tagged this as a tech-support scam.
- Tagged as scareware / adware / malvertising.
- Scareware / adware / notification-spam language in the tags.
Technical Details
Identity, domain, infrastructure, and connection facts saved with this scan.
July 20, 2026 at 7:02 AM UTCIdentity
6 facts- Operator
- Claimed Only
- On-domain email
- Not observed
- Other email
- Not observed
- Phone
- 2 numbers
- Postal address
- Not observed
- Social profiles
- Not observed
Domain
8 facts- Domain age
- 16 years old
- Registered
- Jan 20, 2011
- Registrar
- Unavailable
- Expires
- Mar 1, 2027
- WHOIS updated
- Aug 30, 2016
- Registrant
- Unavailable
- Registration country
- Unavailable
- WHOIS privacy
- Not observed
Infrastructure
14 facts- HTTPS
- Valid certificate
- TLS protocol
- TLSv1.3
- Certificate issuer
- Let's Encrypt · YR2
- Certificate subject
- playcomla.com.ar
- Certificate valid from
- Jul 8, 2026
- Certificate valid to
- Oct 6, 2026
- Network address
- 186.148.232.40
- ASN
- Unavailable
- Hosting organization
- LOS AMORES S.A.
- Country
- AR
- Server
- nginx
- Site platform
- Unavailable
- IP reputation
- 0% confidence · 0 reports
- Tor exit node
- No
Connections
13 facts- Scan scope
- Domain
- Destination host
- playcomla.com.ar
- Redirects
- 1
- Cross-domain redirect
- No
- Redirect status codes
- 301 → 200
- Lookalike characters
- Not observed
- Internationalized domain
- No
- Page response
- 200
- Observation coverage
- Unavailable
- Extracted links
- Unavailable
- Unique IPs contacted
- Unavailable
- Countries contacted
- Unavailable
- Referenced domains
- 2
What to do
Do not follow any on-screen instructions or run the suggested keyboard commands. Close the page immediately and scan your device with up-to-date security software if you have already interacted with the prompts.
If you paid, contact your bank or payment provider immediately and preserve receipts and messages. If you shared personal information, monitor the affected accounts and change any reused passwords through the official service.
Final Verdict
Why this verdict
The site is a tech support scam that impersonates a Google Chrome security update page, references CVE-2024-0519, and directs users through Win+R and CTRL+V steps to download malware.
Do not follow any on-screen instructions or run the suggested keyboard commands. Close the page immediately and scan your device with up-to-date security software if you have already interacted with the prompts.
Key evidence
- 1Impersonates Google Chrome branding and uses a fabricated CVE to create urgency
- 2Directs users to run Win+R then CTRL+V commands that lead to executable download
- 3One antivirus engine flagged the URL as malicious
Safety FAQ
Is playcomla.com.ar safe to use?+
The site is a tech support scam that impersonates a Google Chrome security update page, references CVE-2024-0519, and directs users through Win+R and CTRL+V steps to download malware.
What should I do about playcomla.com.ar?+
Do not follow any on-screen instructions or run the suggested keyboard commands. Close the page immediately and scan your device with up-to-date security software if you have already interacted with the prompts.
How old is playcomla.com.ar?+
playcomla.com.ar is 16 years old and was registered jan 21, 2011.
What if I already interacted with playcomla.com.ar?+
If you paid, contact your bank or payment provider immediately and preserve receipts and messages. If you shared personal information, monitor the affected accounts and change any reused passwords through the official service.
When was this report updated?+
This report reflects the scan completed July 20, 2026 at 7:02 AM UTC.
User reviews & comments(0)
Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.