# puqp.fun — SUSPICIOUS > PhishDestroy identifies puqp.fun as a LIVE phishing domain hosting a fake login portal. Resolves to 188.114.96.3 and remains undetected by VirusTotal (0/95). ## Summary puqp.fun is currently under active investigation as a generic phishing domain designed to harvest login credentials and personal data. The domain resolves to IP address 188.114.96.3, a hosting infrastructure frequently abused for fraudulent activities. PhishDestroy's threat intelligence indicates that this domain was registered through Global Domain Group LLC on March 16, 2026 — a suspiciously recent creation date that suggests opportunistic domain squatting or bulk registration for malicious purposes. At the time of analysis, VirusTotal reports zero detections out of 95 antivirus engines, meaning traditional security tools have not yet flagged this domain. This low detection rate increases the risk of successful phishing attempts, as end-users and automated systems remain unaware of the threat. The technical indicators supporting this classification include the use of a Let's Encrypt SSL certificate, which may be used to lend false credibility to phishing pages by displaying a padlock icon in browsers. The domain's hosting provider and registrar reputation raise additional concerns, as Global Domain Group LLC has been associated with multiple previously reported malicious domains. With no current blocklist presence and low antivirus coverage, puqp.fun represents a high-risk phishing vector that could be weaponized in spear-phishing campaigns, credential harvesting attacks, or social engineering schemes. The domain’s recent creation and clean reputation profile make it particularly dangerous for unsuspecting users. If you have visited puqp.fun, immediately cease any data entry and change passwords for accounts potentially exposed. Disconnect from the internet if possible, run a full antivirus scan, and clear browser cache and cookies. Report the domain to your IT security team or via platforms like Google Safe Browsing and PhishDestroy. Organizations should consider blocking the IP (188.114.96.3) and domain at the network level to prevent further exposure. Proactive monitoring of credential reuse across platforms is strongly recommended to mitigate potential account takeovers resulting from this phishing attempt. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-16 21:19:09 - Registrar: Global Domain Group LLC - IP: 188.114.96.3 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/715fdb0e-149e-46ef-b9df-247377324ab5 - PhishDestroy: https://phishdestroy.io/domain/puqp.fun/ - LLM endpoint: https://phishdestroy.io/domain/puqp.fun/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/puqp.fun/ Last updated: 2026-03-24