pancakeswapfx[.]serveftp[.]com
“Index of /”
pancakeswapfx.serveftp.com — Неперевірений. Уособлення бренду: PancakeSwap; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 10/93 (alphaMountain.ai, BitDefender, CyRadar, Forcepoint ThreatSeeker, Fortinet); URLQuery 5 alerts; CF Radar malicious; PhishDestroy score 85/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain pancakeswapfx.serveftp.com was registered on 21 February 2026 and is presently offline. Infrastructure analysis shows it resolves to the IP address 45.33.65.77, which belongs to the Akamai Connected Cloud network (AS63949) located in the United States. The host presents an HTTPS certificate issued to PhishDestroy and botadmin.destroy.tools, indicating that the site was deliberately associated with a known anti‑phishing organization, a tactic often used to lend false credibility. An HTTP request to the root returned status code 200 and a page title of “Index of /”, suggesting a directory listing without additional content.
The site was flagged by a single security blocklist and is listed by PhishDestroy as blocked. VirusTotal scans recorded detections from ten of ninety‑three antivirus and URL‑reputation engines, reinforcing the malicious classification. Gridinsoft assigned a trust score of 1 out of 100, the lowest possible rating. The domain is attributed to a crypto‑scam campaign that impersonates the PancakeSwap brand, aligning with the provided brand target and scam type.
While the exact phishing kit or payload has not been publicly disclosed, the convergence of a recent registration date, low‑reputation hosting, malicious SSL metadata, and multiple vendor detections provides strong evidence of intentional brand impersonation. Defenders should add the domain and its resolved IP to blocklists, monitor DNS queries for similar sub‑domains under the serveftp.com zone, and enforce outbound filtering for SSL certificates issued to PhishDestroy or botadmin.destroy.tools. Continuous re‑evaluation is advised in case the site is re‑activated, and any observed traffic should be correlated with the identified indicators of compromise.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | pancakeswapfx.serveftp.com |
malicious | Sinkholed |
| OpenDNS | pancakeswapfx.serveftp.com |
phishing | Phishing Block |
| DNS4EU | pancakeswapfx.serveftp.com |
malicious | Sinkholed |
| Cloudflare DNS | pancakeswapfx.serveftp.com |
malicious | Sinkholed |
| DNS0 Zero | pancakeswapfx.serveftp.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога