pancakeswapb[.]solsss[.]top
pancakeswapb.solsss.top — 内容不可用. 品牌冒充:PancakeSwap; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 13/93 (Criminal IP, alphaMountain.ai, ArcSight Threat Intelligence, BitDefender, CyRadar); URLScan malicious verdict; PhishDestroy score 89/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, pancakeswapb.solsss.top, was registered on 21 February 2026 and is presently listed as offline. Infrastructure analysis shows that the hostname resolves to the IP address 104.21.48.1, which is owned by Cloudflare, Inc. (ASN 13335) and geolocated to the United States. The SSL certificate presented for the host is identified as “WE1”, indicating the use of a generic or possibly mis‑issued certificate rather than one tied to the legitimate PancakeSwap service. Threat intelligence sources have correlated the domain with a crypto‑scam campaign that explicitly impersonates the PancakeSwap brand.
VirusTotal has recorded 13 positive detections out of 93 scanning engines, reinforcing the malicious classification. The domain appears on a single external blocklist at the time of analysis, and PhishDestroy has applied a block for this indicator. Given the combination of brand impersonation, the presence of a cloud‑based hosting profile, and multiple vendor detections, the domain is assessed at an elevated risk level. Defenders should incorporate the indicator into URL filtering rules, enforce DNS sink‑hole policies for the A record 104.21.48.1, and monitor for any resurgence of the host.
Since the site is already taken offline, immediate mitigation focuses on preventing re‑registration and ensuring that any residual traffic is redirected to security controls. Continuous observation of the associated IP range and certificate fingerprint is recommended to detect potential re‑use by related campaigns. Analysts should also reference the unique seed e5f1b6 when correlating this artifact with other observed threats to improve attribution accuracy.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。