MALICIOUS — CRITICAL
pepeenode-io[.]pages[.]dev
The domain pepeenode-io.pages.dev was created on June 09 2026 and is hosted on Cloudflare Pages, resolving to the Cloudflare‑owned address 172.66.44.101 in Canada.
- VirusTotal
- 5/91
- Blocklists
- No stored match
- Disponibilità
- Ultimo attivo conosciuto · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
pepeenode-io.pages.dev — Ultimo attivo conosciuto (HTTP 200). Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 5/91 (alphaMountain.ai, Forcepoint ThreatSeeker, G-Data, LevelBlue, Sophos); PhishDestroy score 83/100. Registrar: Cloudflare Pages.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
The domain pepeenode-io.pages.dev was created on June 09 2026 and is hosted on Cloudflare Pages, resolving to the Cloudflare‑owned address 172.66.44.101 in Canada. The site presents a page titled “PEPENODE Official Website Presale | Meme Coin Mining Token,” indicating a cryptocurrency‑related offering. An SSL certificate issued by Google Trust Services (WE1) is in place, providing HTTPS encryption but offering no indication of legitimacy. The domain appears on one security blocklist and is actively blocked by PhishDestroy, confirming its classification as a brand‑impersonation phishing site. VirusTotal scans show five of ninety‑one security vendors flagging the domain, reinforcing the high‑risk assessment. Infrastructure analysis reveals no additional infrastructure beyond the Cloudflare edge, and no further technical artifacts have been disclosed. Defenders should immediately block traffic to this domain, add it to internal blacklists, and monitor for any related C2 or credential‑harvesting activity. Continuous re‑scanning is advised to capture any changes in detection status, and any emails or communications referencing the “PEPENODE” presale should be treated as malicious. The current evidence supports a high‑risk rating and active status, warranting proactive mitigation.
Copertura dei dati12 recorded checks
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi di VirusTotal
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.