governance-pendlefl[.]com
governance-pendlefl.com için kimlik avı ve güvenlik kontrolü
“Pendle - Liberating Yield”
governance-pendlefl.com — İçerik kullanılamıyor (HTTP 502). Marka kimliğine bürünme: Pendle; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); URLQuery 6 alerts; PhishDestroy score 71/100. Kayıt kuruluşu: Dynadot.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies governance-pendlefl.com as an active brand impersonation campaign masquerading as the legitimate DeFi protocol Pendle. This domain was flagged on June 10, 2025, and is designed to deceive users into entering credentials or transferring assets under the false pretense of governance participation. The threat actor registered the domain through Dynadot Inc, leveraging its similarity to official Pendle domains to exploit trust and harvest sensitive information. This domain exhibits multiple red flags consistent with phishing infrastructure. It resolves to IP address 188.114.97.3 and holds an SSL certificate issued by Google Trust Services, which may provide an initial sense of legitimacy to visitors. Despite its recent creation, governance-pendlefl.com has not yet been flagged by security vendors, with VirusTotal currently reporting 0 detections out of 95 scans. This low detection rate highlights the stealthy nature of the campaign and the need for heightened vigilance. The domain’s age, registrar choice, and SSL configuration are all tactical elements employed to evade immediate detection. Users who visited governance-pendlefl.com should immediately assess any interactions, particularly if credentials or financial information were entered. Disconnect from the domain immediately and revoke any exposed credentials on official Pendle platforms. Report the domain to security teams or block it using network defenses. Monitor financial accounts for unauthorized activity and consider running a malware scan on devices used to access the site. Users are advised to access Pendle exclusively through verified domains and channels to avoid further exposure.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | www.pendle.finance/_nuxt/by2fuam6.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | www.pendle.finance/_nuxt/bsthm_t_.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | www.pendle.finance/_nuxt/db2_t1rz.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | www.pendle.finance/_nuxt/ccugzssm.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | www.pendle.finance/_nuxt/ciwqo1ja.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | www.pendle.finance/_nuxt/cll9kbcs.js |
audit | Hunting_JS_WebAssembly |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 6 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
Progressive JavaScript framework for building user interfaces.
Hybrid Vue framework for server-side rendering and static sites.
Platform for deploying and hosting modern web applications.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of governance-pendlefl.com · checked Apr 15, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin