MALICIOUS — CRITICAL
Phishing- und Sicherheitsprüfung für pupump.fun
pupump[.]
PhishDestroy identifies pupump.fun as an active brand-impersonation page targeting Pump.fun users.
- VirusTotal
- 15/91
- Blocklists
- 2 · MetaMask, SEAL
- Verfügbarkeit
- Inhalt nicht verfügbar · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
pupump.fun — Inhalt nicht verfügbar (HTTP 502). Markenidentität: Pump.fun; Betrugstyp: Brand Impersonation. Zusammenfassung der Beweislage: VirusTotal 15/91 (ADMINUSLabs, G-Data, Kaspersky); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Registrar: NiceNIC.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Evidence Analysis
PhishDestroy identifies pupump.fun as an active brand-impersonation page targeting Pump.fun users. The domain is designed to trick visitors into believing it is the legitimate Pump.fun platform, enabling criminals to harvest login credentials and crypto wallet seeds. Anyone who enters information risks direct financial loss and account takeover.
This domain was flagged after VirusTotal returned 15/95 detections, indicating it currently evades most antivirus engines. Technical records show pupump.fun was created on April 24, 2026, and is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED. It resolves to IP address 104.21.48.177 and holds a Let’s Encrypt SSL certificate, which attackers often use to appear legitimate.
If you visited pupump.fun, immediately check any wallets or accounts you may have accessed from the site. Revoke connected permissions, rotate passwords, and move funds to a new, hardware-isolated wallet. Report the domain to your browser’s safe-browsing program and warn others to avoid it; brand-impersonation sites like this frequently resurface under new names, so stay vigilant for similar domains.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Datenabdeckung12 recorded checks
Erkenntnisse zur Netzwerksicherheit Registrar context
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 04:15:10 UTC
Technologien · 6 identified
The web-vitals JavaScript is a tiny, modular library for measuring all the web vitals metrics on real users.
github.com 100 % KonfidenzGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100 % KonfidenzCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100 % KonfidenzCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % KonfidenzHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % KonfidenzVirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of pupump.fun · checked Apr 29, 2026
Nachweise und externe BerichteIndependent lookups and source reports
PD-20260428-A86879 Recipient: abuse@nicenic.net, abuse@radix.email Victim safety and official reportingImmediate actions and verified reporting channels
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.