pancakeswap[.]finance-api-swap-portal-cdn[.]cloud
“Home | PancakeSwap”
pancakeswap.finance-api-swap-portal-cdn.cloud — Контент недоступен (HTTP 502). Олицетворение бренда: PancakeSwap; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 0/93; URLScan malicious verdict; PhishDestroy score 48/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain pancakeswap.finance-api-swap-portal-cdn.cloud was registered on February 21, 2026 and is currently taken offline. The site was identified as a brand‑impersonation effort targeting PancakeSwap, with the page title "Home | PancakeSwap" indicating an attempt to mimic the legitimate service. Infrastructure analysis shows the domain resolves to IP address 188.114.96.3, which belongs to Cloudflare, Inc. (AS13335) and is geolocated in the United States. The SSL certificate presented is identified as "WE1", but no further validation details are available.
The domain appears on a single security blocklist and has been blocked by the PhishDestroy sinkhole, confirming that defensive controls have already taken action against it. VirusTotal reports that the domain was scanned by 93 vendors; none of the vendors flagged the host at the time of analysis, but the absence of detections does not constitute a safety assurance. The known scam type is classified as a crypto scam, consistent with the targeted brand.
Open questions remain regarding the specific phishing payload, any credential‑harvesting forms, or additional malicious infrastructure that may have been associated before takedown. Defenders should continue to monitor the associated IP address for any re‑use, enforce blocklisting of the domain across DNS filtering solutions, and update brand‑monitoring alerts for PancakeSwap to capture similar impersonation attempts. Evidence of the block by PhishDestroy and the presence on a blocklist should be logged in incident tracking systems, and any related traffic should be inspected for indicators of compromise.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание