cupsey[.]free-meme[.]fun
“$TOKEN â Solana Airdrop”
Evidence Summary
cupsey.free-meme.fun is currently listed as an active delivery‑scam infrastructure with an elevated risk rating. The domain has been added to the PhishDestroy blocklist and is present on a single external security blocklist, indicating that at least one reputable anti‑phishing feed is already monitoring it. VirusTotal analysis shows that three out of ninety‑one scanning engines have flagged the domain as malicious, confirming that automated detection systems have observed suspicious behavior. No additional public intelligence such as registrar details, IP address, hosting provider, ASN, or SSL certificate information is available in the current dataset, and the page title or any brand targeting information has not been disclosed.
Consequently, the exact payload or delivery mechanism employed by the site cannot be described with certainty. The limited visibility suggests that the operators may be using fast‑flux or newly provisioned hosting to evade rapid attribution, but this remains speculative. Defenders should block or sinkhole the domain at the network perimeter, update DNS filtering policies to include the domain, and monitor for any outbound connections from internal hosts to the associated IP range once it becomes resolvable.
Continuous monitoring of threat‑intel feeds for new detections, additional blocklist entries, or changes in the VirusTotal detection count is recommended. Organizations that handle sensitive customer data should reinforce user awareness training around delivery‑scam emails, especially those that reference unexpected packages or shipping notifications, as these are common vectors for credential harvesting. Incident response teams should be prepared to isolate compromised endpoints and collect forensic evidence should any interaction with the domain be observed.
Submitted Evidence Snapshot
- Sent
- Ledger records
- 1
- Case ID
PD-20260802-832A98- PDF artifact
- PDF evidence
Full evidence text
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Network Security Intelligence
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 12, 2026
7 monitored external feeds No match
Stored outcome evidence
Outcome & takedown attribution
- Outcome
held- Availability
unreachable- Cause
registry_server_hold- Mechanism
server_hold- Confidence
- 95%
- First observation
- Latest observation
Estimated unavailability
Time to unavailability: 0 hEvidence SHA-256 c675a9fea5f6
Detection timeline
-
First recorded
First stored value: Reachable
-
Availability
First stored value: DNS inactive
f93a11f87e4d -
Availability
DNS inactive → Unknown
dcae0997a7db -
Domain status
Reachable → Unreachable
-
Availability
Unknown → DNS inactive
f3f523b557a7 -
Availability
DNS inactive → Held
29a53cbeba12 -
Availability
Held → DNS inactive
f52d526b76a1 -
Availability
DNS inactive → Unknown
3406faad42d5 -
Availability
Unknown → Held
e5471d041bf7 -
Availability
Held → Unknown
b38fbb3f3bf2
Show all (14)
-
Availability
Unknown → DNS inactive
6dfe9145995c -
Availability
DNS inactive → Held
e9239022f411 -
Availability
Held → DNS inactive
641ed81dc4d5 -
Availability
DNS inactive → Unknown
f852dbac9ea9 -
Availability
Unknown → Held
92e078d71fc2 -
Availability
Held → Unknown
c2d335deb88c -
Availability
Unknown → DNS inactive
d0b7046e8c2f -
Availability
DNS inactive → Held
01cbfca01367 -
Availability
Held → DNS inactive
ca9ed662b468 -
Availability
DNS inactive → Unknown
a8960e74f6a1 -
Availability
Unknown → Held
eb9015ccac31 -
Availability
Held → DNS inactive
92f667ff6e00 -
Availability
DNS inactive → Unknown
454da900012c -
Availability
Unknown → Held
c675a9fea5f6
Community reports
Reported by 0 community members, first seen Aug 2, 2026
- Unique reported URLs
- 1
Stored Capture
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Registration: free-meme.fun
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For the registrable domain free-meme.fun behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
3 high-confidence technologies identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of cupsey.free-meme.fun · checked Aug 2, 2026
Lookalike domains
118 stored lookalike domains
Show all (88)
Showing 100 of 118
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive