distribution-porkcoin[.]com
“PorkCoin”
distribution-porkcoin.com — Conteúdo indisponível. Tipo de golpe: Wallet/seed Phishing. Resumo das evidências: VirusTotal 7/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, G-Data); 2 external blocklist matches (ScamSniffer, Enkrypt); PhishDestroy score 71/100.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain distribution-porkcoin.com was registered on 21 February 2026 and is currently taken offline. Automated scans show the site hosted on Cloudflare’s network (ASN 13335) with the IPv6 address 2606:4700:3036::ac43:d214, geolocated to the United States. The TLS certificate is issued by GTS CA 1P5, indicating a standard Cloudflare‑provided certificate without custom validation. The page title returned from the HTTP response is “PorkCoin”, and the brand indicated for the campaign is x.com, matching a wallet/seed phishing lure.
Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on three independent security blocklists. It is also listed as blocked by PhishDestroy, ScamSniffer, and Enkrypt. VirusTotal analysis reports that 7 of 93 scanning engines flagged the domain, reinforcing the malicious assessment. The available intelligence does not disclose the exact content rendered before takedown, nor does it reveal any associated command‑and‑control infrastructure or payload samples.
Consequently, the precise phishing landing page layout and credential‑harvesting mechanisms remain unknown. Defenders should add the domain and its IPv6 host to deny‑list rules in perimeter firewalls and proxy filters, ensure that any inbound or outbound traffic to AS 13335 from corporate networks is monitored for anomalous activity, and verify that users are educated about unsolicited wallet‑seed requests that reference x.com. Continuous monitoring of the blocklist feeds that have already flagged this domain is recommended, as future re‑registration attempts are likely to reuse similar naming patterns or the same Cloudflare edge IP range. Incident response teams should also query VirusTotal and other multi‑engine services for new detections in case the domain resurfaces, and consider sharing the indicators of compromise with threat‑intelligence sharing platforms to improve collective defenses.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência forense
Análise do VirusTotal
Evidências e relatórios externos
“Automated report created via SEAL 911”
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo