web2.pancake[.]run
Category: Cryptocurrency
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of web2.pancake[.]run
The domain web2.pancake[.]run appears to present itself as a cryptocurrency trading interface branded as PancakeSwap. The page title, metadata, and screenshot suggest it is designed to resemble a decentralized exchange homepage where users can trade tokens, connect a wallet, and interact with multichain crypto features such as swaps, perpetuals, and earning tools.
Based on the branding and page layout, the site appears intended to attract users looking for PancakeSwap-related services. However, it is hosted on a separate pancake.run subdomain rather than the better-known PancakeSwap web properties referenced in the page resources, which may indicate an unofficial deployment, a promotional mirror, or a look-alike page. The available scan data does not confirm legitimate operation by the PancakeSwap team, so ownership should be treated as unverified based on this scan alone.
Safety Assessment for web2.pancake[.]run
This domain was flagged by 15 out of 92 security engines at the time of the scan, with many of those detections classifying it as phishing or malicious. In addition, one blacklist database listed the domain, and the malware scan reported malicious findings tied to the page and to a referenced PancakeSwap-related node domain. Those signals provide broader corroboration than a single heuristic alert and suggest the site may present credential theft, wallet-connection, or crypto-targeted phishing risk.
The page also closely imitates PancakeSwap branding, including the site title, visual design, and crypto wallet connection flow. Because the domain is web2.pancake[.]run rather than a more established PancakeSwap domain, it may be a look-alike intended to appear affiliated with the real service. This kind of branding resemblance can be especially risky on cryptocurrency sites, where users may be prompted to connect wallets or approve transactions.
Although some blacklist sources were clean at the time of this scan, the multi-engine phishing consensus and the deceptive branding pattern are notable concerns. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was served over HTTPS with a valid Let's Encrypt certificate, hosted on Vercel infrastructure at IP address 76.76.21.61 in the United States. Nameservers point to Vercel DNS, and the page appears to be built with a modern JavaScript framework using numerous _next/static assets, consistent with a Next.js deployment. The domain itself is about 4 years old, which can sometimes add credibility, but age alone does not outweigh active phishing indicators.
DNSSEC appears to be unsigned, which means DNS responses do not benefit from DNSSEC validation. The more significant technical concern is not the TLS setup but the scan behavior: numerous linked static assets were generically flagged, and the page references external crypto-related infrastructure while presenting a wallet-oriented interface under branding that may not be officially authorized.
Share your experience with this website. Was it safe? Did you encounter any issues?