Analysis of fortnitetracker.cc indicates a high-risk phishing domain targeting users of the Fortnite gaming platform. The domain was registered on April 25, 2026, through Gname.com Pte. Ltd., a registrar frequently associated with abusive registrations. Infrastructure analysis reveals the domain resolves to the IP address 158.94.211.169 and utilizes nameservers a.dnspod.com, b.dnspod.com, and c.dnspod.com, a configuration commonly observed in phishing campaigns leveraging DNSPod's services.
As of July 31, 2026, the domain remains active and is flagged by one security blocklist, specifically PhishDestroy. VirusTotal scans show that 4 out of 91 security vendors detect the domain as malicious, providing corroborating evidence of its phishing classification. The domain's name, fortnitetracker.cc, closely mimics legitimate Fortnite tracking services, suggesting an intent to deceive users into submitting login credentials or other sensitive information.
No additional details regarding the specific phishing kit, page content, or targeted brand elements beyond the domain name are currently available. Defenders are advised to block the domain at the DNS level and monitor associated IP addresses for related malicious activity. Given the domain's active status and detection by multiple security sources, organizations should treat this as an active threat and prioritize mitigation efforts.