synchub[.]live
“PANITULZ FINANCE QI”
Resumo das evidências
The domain synchub.live was registered on February 21, 2026 and is currently listed as offline. Infrastructure analysis shows the domain resolves to the IP address 102.212.247.187, which is hosted by Truehost Cloud Limited in the United States and assigned to ASN 329278. The site presented the page title "PANITULZ FINANCE QI," a title that does not correspond to the targeted brand. VirusTotal reports three detections out of ninety‑three scanners, indicating that a minority of security products identified malicious behavior.
The domain appears on five independent blocklists, specifically PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura, reinforcing the consensus that the host is associated with malicious activity. Gridinsoft assigned a trust score of zero out of one hundred, reflecting an extremely low confidence in the site’s legitimacy. The SSL certificate is identified only as "R11," without further validation details, which is consistent with low‑quality or self‑signed certificates often used in fraudulent deployments. The campaign is classified as a crypto scam that impersonates the Metamask brand, suggesting that the operator intended to lure cryptocurrency users into disclosing private keys or credentials.
While the exact content of the landing page has not been captured, the combination of brand impersonation, low trust score, blocklist presence, and partial VirusTotal detections provides sufficient evidence for defensive action. Organizations should block DNS resolution for synchub.live, add the associated IP 102.212.247.187 to network‑level deny lists, and monitor for any outbound connections to that address. Email gateways should flag messages containing links to this domain, and endpoint protection solutions should be updated to include the observed indicators of compromise. Continuous monitoring of threat‑intel feeds for re‑use of the same IP or certificate is recommended, as the operator may redeploy the infrastructure under a new domain.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
6 fontes externas monitoradas Sem correspondência
Inteligência forense
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo