pendle[.]finance-waliets-v2-apps[.]com
“Access Denied”
pendle.finance-waliets-v2-apps.com — 内容不可用 (HTTP 502). 品牌冒充:Pendle; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 2/93 (CRDF, Gridinsoft); PhishDestroy score 56/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of pendle.finance-waliets-v2-apps.com indicates that the domain was registered on February 21, 2026 and is currently listed as offline. The site resolves to the IP address 172.67.141.126, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The domain presents a valid SSL certificate identified as WE1, suggesting the use of HTTPS for client connections. The page title returned by the server is “Access Denied,” and the domain has been classified as a brand‑impersonation campaign targeting the cryptocurrency platform Pendle.
PhishDestroy has placed the domain on its blocklist, and the domain appears on one additional security blocklist, confirming that at least one independent threat‑intelligence source has flagged the host. VirusTotal reports that two of ninety‑three scanning engines have flagged the domain, providing limited but corroborating evidence of malicious intent. Gridinsoft assigns a trust score of 0 out of 100, indicating an extremely low reputation. The registrar information is not disclosed in the provided data, and no further details about the underlying phishing kit or payload are available.
Uncertainty remains regarding the specific phishing pages or credential‑harvesting mechanisms, as the observed HTTP response is limited to an “Access Denied” title. Defenders should continue to block the domain at network perimeter devices, update DNS filtering policies to include the observed IP range, and monitor for any future re‑registration attempts. Additional investigation of the SSL certificate chain and correlation with other Cloudflare‑hosted impersonation domains may reveal shared infrastructure that can be leveraged for proactive mitigation.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。