farming-eth-usdc[.]world
“Liquidity Farm”
farming-eth-usdc.world — Conteúdo indisponível (HTTP 502). Representação da marca: Google. Resumo das evidências: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Forcepoint ThreatSeeker); Google Safe Browsing flagged; PhishDestroy score 86/100.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis as of July 29, 2026 indicates that the domain www.farming-eth-usdc.world is actively used in a social‑engineering campaign. The domain is listed on a single public blocklist and has been forcibly added to the PhishDestroy sinkhole, confirming that security operators have observed malicious activity originating from it. DNS resolution points to the IPv4 address 104.21.75.34; no authoritative name servers were returned during the query, which suggests the domain may be using a CDN or a dynamic DNS service that does not expose traditional NS records. VirusTotal has recorded detections from 12 of 91 scanning engines, a signal that multiple independent tools have identified malicious payloads or suspicious behavior associated with the host.
Google Safe Browsing classifies the site under the “social engineering” category, reinforcing the hypothesis that the domain is employed to lure victims into disclosing credentials or personal data. The available intelligence does not include a harvested page title, identified brand target, or concrete information about the phishing kit in use, leaving the exact luring technique undefined. Consequently, defenders cannot attribute the campaign to a specific brand impersonation, nor can they describe the exact user‑experience flow. The lack of visible nameserver records also hampers attribution of the underlying registrar or hosting provider.
Given the observed indicators, network defenders should immediately block traffic to 104.21.75.34 and to the fully qualified domain name www.farming-eth-usdc.world at both DNS and HTTP layers. Security appliances should be updated with the domain and IP as malicious indicators, and any existing email or web filters that rely on Google Safe Browsing or VirusTotal reputation data should be refreshed to reflect the current detections.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo