MALICIOUS — CRITICAL
fortbox.fun की फ़िशिंग और सुरक्षा जाँच
fortbox[.]
PhishDestroy identifies fortbox.fun as an active, elevated-risk phishing domain posing as a legitimate service to harvest user credentials.
- VirusTotal
- 1 detections
- Blocklists
- No stored match
- उपलब्धता
- ढका हुआ · पहुंच योग्य · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
fortbox.fun — ढका हुआ · पहुंच योग्य (HTTP 502). ब्रांड प्रतिरूपण: Fortnite; घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 1 detections (engine total unavailable) (ESET); URLScan malicious verdict; cloaking observed; PhishDestroy score 71/100. रजिस्ट्रार: Global Domain Group.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Evidence Analysis
PhishDestroy identifies fortbox.fun as an active, elevated-risk phishing domain posing as a legitimate service to harvest user credentials. This domain represents a clear credential theft threat, with adversaries leveraging social engineering to trick victims into submitting sensitive login information. The site’s immediate availability and the presence of a valid SSL certificate issued by Let’s Encrypt may further lend it an air of legitimacy at first glance—heightening the risk of successful deception. This domain was flagged by 1 out of 95 VirusTotal security vendors. It resolves to IP address 104.21.80.226 and was registered through Global Domain Group LLC on April 28, 2026. While the domain currently sits at low detection coverage, its active status and hosting configuration suggest ongoing operations. The use of Let’s Encrypt for SSL suggests the threat actors are prioritizing perceived trust, likely to bypass browser warnings and increase engagement. Given the recency of domain registration and the lack of broad blocklisting, this phishing campaign may be in an early or targeted phase. To mitigate risk, users must avoid interacting with fortbox.fun entirely. Organizations should block the domain at DNS and firewall levels, and inspect outbound traffic for connections to 104.21.80.226. Security teams are advised to monitor for related TLS certificate issuance patterns using Let’s Encrypt logs and to warn users about spoofed login prompts. Proactive user awareness training on identifying phishing lures is strongly recommended to reduce the likelihood of credential compromise through this or similar campaigns.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
डेटा कवरेज12 recorded checks
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें · 4 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% विश्वासCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वासवायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
PD-20260512-813DC2 Recipient: registry@globaldomaingroup.com Victim safety and official reportingImmediate actions and verified reporting channels
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।