Lompat ke laporan keamanan
Checked 09/08/2026 Ref 936742AA

MALICIOUS — HIGH

pumpfun-official[.]pages[.]dev

PhishDestroy identifies pumpfun-official.pages.dev as an active brand impersonation domain targeting Pump.fun users.

45/100 evidence score · High
VirusTotal
0/91
Blocklists
No stored match
Ketersediaan
Dapat dijangkau · akses dibatasi · HTTP 403
2026-04-30 18:56 UTCDapat dijangkau · akses dibatasi · HTTP 403

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Domain ini telah ditandai sebagai berbahaya
Analisis forensik PhishDestroy menandai domain ini. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
Jump to section
Ringkasan laporan

pumpfun-official.pages.dev — Dapat dijangkau · akses dibatasi (HTTP 403). Peniruan identitas merek: Pump.fun; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 0/91; URLScan malicious verdict; PhishDestroy score 45/100. Registrar: Cloudflare.

Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.

Evidence Analysis

Ref 936742AA

PhishDestroy identifies pumpfun-official.pages.dev as an active brand impersonation domain targeting Pump.fun users. The domain leverages Cloudflare Pages to host a deceptive interface resembling the official Pump.fun platform, including a page titled 'Pump' to mislead victims. While no specific drainer kit or malicious payload has been confirmed, the threat actor's tactic of impersonating a reputable crypto launchpad suggests a high potential for credential theft or financial fraud. The use of Cloudflare’s infrastructure complicates takedown efforts, as threat actors frequently abuse legitimate services to evade detection. This domain was flagged with a VirusTotal detection score of 0/95 as of the latest scan, indicating it remains undetected by most antivirus engines. It resolves to IP address 172.66.47.113, registered through Cloudflare, Inc., with a Google Trust Services SSL certificate. Based on available data, the domain appears to be recently created, though the exact registration date is not disclosed in open-source intelligence. It has not been flagged in Google Safe Browsing (GSB) and has no recorded entries on public blocklists, highlighting a window of opportunity for the threat actor to operate unimpeded. Current status remains active, with no takedown or mitigation observed at this time. Users are advised to avoid interacting with pumpfun-official.pages.dev and report it to their security teams or through threat intelligence platforms. Remaining risk is assessed as moderate due to the lack of detection coverage and the domain’s active hosting status. Continuous monitoring is recommended to track any shifts in payload delivery or infrastructure changes.

VirusTotal
VirusTotal
0 det.
URLScan
URLScan
Sertifikat TLS
Google Trust Services
Hosting
Cloudflare Pages
Usia
3 mo
Status terpantau
Dapat dijangkau · akses dibatasi 403
PhishDestroy
Daftar Hapus
Terdaftar
Cakupan data12 recorded checks
VirusTotal checked — no detections recorded URLQuery checked — no detections recorded PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture laporan yang disimpan URLScan verdict malicious Pemblokiran DNS 14 diperiksa — tidak ada blokir TLS valid certificate, 57d WHOIS 3 mo old Tangkapan layar 3 captures · 3 sources Rantai pengalihan tidak diselidiki
Intelijen Keamanan Jaringan
Free Hosting Detected Cloudflare Pages
This domain is hosted on Cloudflare Pages (free hosting platform). Free hosting platforms are commonly used for both legitimate testing/development and malicious purposes. Additional context is needed

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
11/13

Status Daftar Blokir Publik

Tangkapan tersimpan

Intelijen Domain

Domain
URLScan Verdict Berbahaya score 100 Phishing brand: Pumpfun report ↗
Telegram IoCs 1 extracted https://t.me/pump_tech_updates
Server / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Reputasi Edge-IP tidak dikaitkan dengan domain ini.
Penyedia platform Cloudflare US(US)
Alamat IP 172.66.47.113 CDN
LokasiCA Toronto, CA
JaringanAS13335 · Cloudflare, Inc.
IP asal tersembunyi di balik proksi CDN. Hasil IP terbalik untuk alamat edge berisi penyewa yang tidak terkait; menemukan asal memerlukan DNS pasif atau data transparansi sertifikat.
Status HTTP403 Forbidden
Elapsed Since First Report 46 days
Yang kami hitung Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Dapat dijangkau · akses dibatasi.
Isi setiap laporan Catatan laporan keluar yang disimpan dapat merujuk pada bukti yang tersedia pada saat itu, seperti keputusan vendor, data pendaftaran, detail hosting, klasifikasi, atau tangkapan layar. Halaman ini tidak menyimpulkan secara pasti muatan yang dikirimkan, penerimaan, pengakuan, atau tindakan oleh penerima.
Rincian teknisDNS, SAN SSL, cap waktu
Pertama Kali Terdeteksi30/04/2026
IoC Extractionscanned 01/08/20260 wallet · 1 Telegram IoC
Submitted URLhttp://pumpfun-official.pages.dev/
Server namahenrik.ns.cloudflare.comthea.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 29/03/2026scanned 30/04/2026
Judul Halaman
Pump
Sertifikat TLS
Valid transport encryption · Diterbitkan oleh Google Trust Services · valid for 57 days
Teknologi · 3 identified
HSTS
Keamanan

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org Keyakinan 100%
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com Keyakinan 100%
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org Keyakinan 100%
Detected via Cloudflare Radar · Wappalyzer engine
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

0 / Vendor keamanan 91 menandai domain ini
View on VT
Last analyzed
No VirusTotal engine marked the domain malicious in the stored analysis.
Analisis Performa Situs

Google PageSpeed Insights — mobile performance audit of pumpfun-official.pages.dev · checked Apr 30, 2026

63
Needs Work
Performance
FCP
6s
First Contentful Paint
LCP
6.3s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
6s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri
Sematkan Laporan IniRead-only HTML widget
HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/pumpfun-official.pages.dev"
  title="PhishDestroy threat report for pumpfun-official.pages.dev"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>