go-pumptololf[.]xyz
“Bounties | Pump.fun”
go-pumptololf.xyz — Konten tidak tersedia. Peniruan identitas merek: Pump.fun; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 6/91 (alphaMountain.ai, CRDF, Ermes, Forcepoint ThreatSeeker, Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. Registrar: NameCheap.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, go-pumptololf.xyz, is actively engaged in brand impersonation targeting Pump.fun, a decentralized platform for token launches. The threat type is classified as high-risk due to its deceptive mimicry of legitimate bounty programs, as indicated by the page title 'Bounties | Pump.fun.' The domain remains operational and unresolved as of the latest verification, posing an ongoing risk to users who may inadvertently disclose sensitive information or credentials. Analysis indicates that go-pumptololf.xyz was registered through NameCheap, Inc. on June 12, 2026, and currently resolves to the IP address 104.21.54.199. Security vendors on VirusTotal have flagged this domain, with 1 out of 95 vendors identifying it as malicious. The SSL certificate is issued by Google Trust Services (WE1), a common tactic to lend an appearance of legitimacy. Infrastructure analysis reveals that the domain appears on three security blocklists and is actively blocked by multiple threat intelligence platforms, including PhishDestroy and MetaMask. The current status of go-pumptololf.xyz is active, and users are advised to exercise extreme caution. Organizations should immediately update their security blocklists to include this domain and its associated IP address. End-users are urged to verify the authenticity of any communications or websites claiming affiliation with Pump.fun by cross-referencing official channels. Network administrators should monitor for connections to 104.21.54.199 and investigate any anomalous traffic originating from internal systems. Proactive measures, such as implementing DNS filtering and educating users on identifying brand impersonation tactics, are recommended to mitigate the risk posed by this domain.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi · 4 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Bukti & Laporan Eksternal
PD-20260612-AADA6C Recipient: abuse@namecheap.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive