MALICIOUS — CRITICAL
pengu-event[.]app
pengu-event.app is a cryptocurrency phishing domain that has been taken down but was previously flagged by two out of 94 vendors on VirusTotal as malicious.
- VirusTotal
- 6/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступність
- Доступно · доступ обмежено · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
pengu-event.app — Доступно · доступ обмежено (HTTP 403). Зведення доказів: VirusTotal 6/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Fortinet, Gridinsoft); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
pengu-event.app Cryptocurrency Phishing Domain
pengu-event.app is a cryptocurrency phishing site with 2 VirusTotal detections. It targets users with fake MetaMask login pages.
pengu-event.app is a cryptocurrency phishing domain that has been taken down but was previously flagged by two out of 94 vendors on VirusTotal as malicious. The domain is also listed on three public blocklists, including PhishDestroy, MetaMask, and SEAL, indicating its involvement in fraudulent activities targeting cryptocurrency users.
The domain was registered with NICENIC INTERNATIONAL GROUP CO., LIMITED and hosted on an IP address managed by CloudFlare, Inc., located in Canada. The SSL certificate was issued by Let's Encrypt, which is commonly used by both legitimate and malicious sites due to its free and automated nature. The page title "Just a moment..." suggests that the site may have employed tactics to delay user interaction, potentially to load malicious scripts or redirect users to phishing pages.
Despite its current offline status, pengu-event.app exemplifies the persistent threat of cryptocurrency phishing scams. The presence of the domain on multiple blocklists and its detection by security vendors underscore its malicious intent. Such domains often exploit the gap between registration and detection by antivirus databases, making early identification crucial in preventing user compromise. PhishDestroy's proactive measures ensure that threats like pengu-event.app are identified and neutralized before they can cause significant harm.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:45:49 UTC
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.