pancake-chain[.]com
“https://www.google.com/recaptcha?gs_lcrp=EgZjaHJvbWUyBggAEEUCOTIQCAEQLhvHARixAxjRAxiABNIKCAIQABixAx…”
ملخص الأدلة
Analysis of the domain pancake-chain.com identifies it as a confirmed crypto scam targeting users of the PancakeSwap decentralized exchange platform. Registered on December 22, 2025, through NiceNIC International Group Co., Limited, the domain resolves to the IP address 146.103.40.253, which is geolocated in Germany and associated with AS215311 (Regxa Company for Information Technology Ltd). Infrastructure analysis reveals the use of Cloudflare nameservers (gerald.ns.cloudflare.com and ziggy.ns.cloudflare.com), a common tactic to obscure hosting details and evade takedowns. The domain lacks an SSL certificate, increasing the risk of unencrypted data interception for any visitors.
Detection data indicates elevated risk: five of 93 security vendors on VirusTotal flagged the domain as malicious, and it appears on at least one security blocklist. The domain has been blocked by PhishDestroy, and Gridinsoft assigns it a trust score of 0 out of 100. The page title, extracted from the domain's content, references Google reCAPTCHA (https://www.google.com/recaptcha?gs_lcrp=EgZjaHJvbWUyBggAEEUCOTIQCAEQLhvHARixAxj), a technique often employed to lend false legitimacy to phishing pages or to bypass automated security scans. No evidence of a live HTTP response is currently available, as the domain has been taken offline.
The scam type is classified as a crypto scam, consistent with brand impersonation of PancakeSwap. Defenders should treat this domain as malicious and prioritize blocking it at the DNS and network levels. Organizations are advised to monitor for connections to the associated IP (146.103.40.253) and investigate any historical interactions with the domain, particularly in logs from December 2025 onward. Given the use of Cloudflare and the domain's brief operational window, further infrastructure linked to this campaign may emerge, warranting continued vigilance.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
أدلة النتيجة المحفوظة
النتيجة وإسناد الإزالة
- النتيجة
held- التوفر
unreachable- السبب
registrar_client_hold- الجهة الفاعلة
- NICENIC INTERNATIONAL GROUP CO., LIMITED
- الآلية
client_hold- درجة الثقة
- 95%
- أول رصد
- أحدث رصد
وقت التعطل التقديري
الوقت حتى تعذر الوصول: 0 hSHA-256 للدليل 58cdd9f87f41
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
-
التوفر
أول قيمة محفوظة: DNS غير نشط
f93a11f87e4d -
التوفر
DNS غير نشط ← غير معروف
cb1fae181822 -
التوفر
غير معروف ← غير نشط
c236bcbd64c7 -
التوفر
غير نشط ← DNS غير نشط
f5630ef87814 -
التوفر
DNS غير نشط ← محتجز
8e71b63c60e5 -
التوفر
محتجز ← DNS غير نشط
f52d526b76a1 -
التوفر
DNS غير نشط ← غير معروف
dfea3f19c32d -
التوفر
غير معروف ← محتجز
d7db81170aac -
التوفر
محتجز ← غير معروف
70434f9384c1
عرض الكل (8)
-
التوفر
غير معروف ← DNS غير نشط
6dfe9145995c -
التوفر
DNS غير نشط ← محتجز
0138428a044b -
التوفر
محتجز ← DNS غير نشط
641ed81dc4d5 -
التوفر
DNS غير نشط ← غير معروف
ed2102327dfd -
التوفر
غير معروف ← محتجز
9ac46a81d53b -
التوفر
محتجز ← غير معروف
342071ba09f5 -
التوفر
غير معروف ← DNS غير نشط
d0b7046e8c2f -
التوفر
DNS غير نشط ← محتجز
58cdd9f87f41
بلاغات المجتمع
أبلغ عنه عضو واحد في المجتمع؛ شوهد أول مرة في 24/12/2025
- البلاغات المحفوظة
- 1
- عناوين URL الفريدة المبلغ عنها
- 1
معلومات المجتمع
بلاغ مجتمعي واحد
الفئةPHISHING
The PhishFort Detection System has flagged this as a domain threat, classified as phishing. Threat detected at 2025-12-29T09:20:56.318Z.
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
نطاقات متشابهة
٨٣ نطاقًا متشابهًا محفوظًا
عرض الكل (71)
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب