distribution-porkcoin[.]com
“PorkCoin”
Résumé des preuves
The domain distribution-porkcoin.com was registered on 21 February 2026 and is currently taken offline. Automated scans show the site hosted on Cloudflare’s network (ASN 13335) with the IPv6 address 2606:4700:3036::ac43:d214, geolocated to the United States. The TLS certificate is issued by GTS CA 1P5, indicating a standard Cloudflare‑provided certificate without custom validation. The page title returned from the HTTP response is “PorkCoin”, and the brand indicated for the campaign is x.com, matching a wallet/seed phishing lure.
Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on three independent security blocklists. It is also listed as blocked by PhishDestroy, ScamSniffer, and Enkrypt. VirusTotal analysis reports that 7 of 93 scanning engines flagged the domain, reinforcing the malicious assessment. The available intelligence does not disclose the exact content rendered before takedown, nor does it reveal any associated command‑and‑control infrastructure or payload samples.
Consequently, the precise phishing landing page layout and credential‑harvesting mechanisms remain unknown. Defenders should add the domain and its IPv6 host to deny‑list rules in perimeter firewalls and proxy filters, ensure that any inbound or outbound traffic to AS 13335 from corporate networks is monitored for anomalous activity, and verify that users are educated about unsolicited wallet‑seed requests that reference x.com. Continuous monitoring of the blocklist feeds that have already flagged this domain is recommended, as future re‑registration attempts are likely to reuse similar naming patterns or the same Cloudflare edge IP range. Incident response teams should also query VirusTotal and other multi‑engine services for new detections in case the domain resurfaces, and consider sharing the indicators of compromise with threat‑intelligence sharing platforms to improve collective defenses.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
8 sources externes surveillées Aucune correspondance
Analyse forensique
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif