panswap[.]app
“PancakeSwap — Track your deals”
साक्ष्य सारांश
PhishDestroy identifies panswap.app as a domain actively distributing a generic phishing drainer kit, masquerading as a legitimate cryptocurrency platform. This domain is not associated with the legitimate PancakeSwap ecosystem, which operates under the domain pancakeswap.finance. The threat involves malicious payloads designed to deceive users into connecting their crypto wallets, enabling attackers to drain digital assets under the guise of a token swap or yield farming service. Investigators have flagged the domain’s suspicious infrastructure, including TLS certificates and domain registration patterns typical of cryptocurrency drainer operations.
This domain was flagged with a VirusTotal detection score of 3/95, indicating no immediate antivirus or security tool alerts despite its malicious intent. It was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar often exploited by threat actors for anonymity. panswap.app resolves to the IP address 172.67.200.165, which is linked to multiple phishing campaigns, and was created on April 20, 2026—unusually recent for a functional platform. The domain utilizes a Let's Encrypt SSL certificate, a tactic to appear legitimate. As of this report, the domain remains unblocked by Google Safe Browsing (GSB) and has not been flagged by major threat intelligence platforms, leaving users vulnerable to exposure.
As of the latest assessment, panswap.app is classified as 'active' with a risk level marked 'under_investigation,' indicating ongoing scrutiny rather than confirmed safe status. PhishDestroy advises users to avoid interacting with this domain due to its association with cryptocurrency drainer kits and the absence of proactive blocking measures. Users who suspect exposure should revoke any wallet connections to panswap.app immediately, monitor transactions for unauthorized activity, and report the domain to relevant cybersecurity authorities. The residual risk remains high, with potential for further malicious updates or expanded targeting. Immediate action is recommended to mitigate financial and data exposure.
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-20260423-37C320- कैप्चर किए गए पेज का शीर्षक
- PancakeSwap — Track your deals & swaps
प्रमाण का पूरा पाठ
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें
3 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of panswap.app · checked Apr 23, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।