fumbledbags[.]fun
Análisis de phishing y seguridad de fumbledbags.fun
“Fumbled Bags â Solana paperhands”
fumbledbags.fun — Contenido no disponible (HTTP 502). Suplantación de marca: Solana; Tipo de estafa: Brand Impersonation. Resumen de las pruebas: VirusTotal 3/94 (alphaMountain.ai, Fortinet, Gridinsoft); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrador: NiceNIC.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
PhishDestroy identifies fumbledbags.fun as an active generic phishing domain under investigation, designed to mimic NFT marketplace platforms for credential theft and crypto drainer operations. The domain is currently unresolved by security vendors but exhibits multiple red flags warranting immediate caution. This domain was flagged by PhishDestroy's automated analysis pipeline using seed 42f40f, with no detections on VirusTotal as of present checks. This domain exhibits several indicators of malicious intent, including a newly registered age of just 1 day (created April 16, 2026), hosting on IP address 188.114.96.3, and registration through NICENIC INTERNATIONAL GROUP CO., LIMITED. The domain leverages a Let's Encrypt SSL certificate to appear legitimate, a common tactic among phishing operators to bypass browser security warnings. Despite zero detections on VirusTotal at the time of analysis, the combination of fresh registration, rapidly changing infrastructure, and lack of historical trust signals suggests this domain may soon be weaponized for phishing campaigns targeting cryptocurrency users and NFT collectors. The threat level for fumbledbags.fun remains under investigation but poses significant risk due to its generic phishing nature and potential for future malicious activity. Users should exercise extreme caution when encountering this domain, particularly in contexts involving digital asset transactions. To mitigate risk, security teams should block the domain at network and endpoint levels immediately. For individuals, avoid interacting with any links or content from fumbledbags.fun, verify URLs through official channels before engagement, and report any suspicious encounters to relevant cybersecurity authorities. Monitor for associated IP addresses and domains sharing the same infrastructure, as this infrastructure may host additional phishing or malware distribution points.
Inteligencia de seguridad de red Registrar context
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 03:55:05 UTC
Tecnologías · 5 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of fumbledbags.fun · checked Apr 18, 2026
Datos y informes externos
PD-20260418-30616A Recipient: abuse@nicenic.net, abuse@radix.email ¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.