footballpro[.]fun
“Sport.Fun”
footballpro.fun — Контент недоступен. Тип мошенничества: Wallet/seed Phishing. Сводка доказательств: VirusTotal 18/93 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, Bfore.Ai PreCrime, BitDefender); Google Safe Browsing flagged; 1 external blocklist match (ScamSniffer); PhishDestroy score 95/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, footballpro.fun, operates as a credential harvesting phishing site targeting users of sports-related services. Analysis indicates the site masquerades under the page title 'Sport.Fun,' presenting itself as a legitimate sports platform to deceive visitors into submitting login credentials, payment details, or other sensitive information. The infrastructure and content are designed to exploit trust in sports entertainment brands, increasing the likelihood of successful social engineering attacks. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain was registered on February 21, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with phishing and fraudulent domains. It resolves to the IP address 188.114.97.3, hosted on AS13335 (Cloudflare, Inc.), a network commonly used to obfuscate malicious infrastructure. At the time of assessment, 18 out of 95 security vendors on VirusTotal flagged footballpro.fun as malicious, while four distinct security blocklists, including Google Safe Browsing, have listed the domain for phishing activity. The absence of an SSL certificate further undermines user security, exposing submitted data to interception. Users who visited footballpro.fun should take immediate remedial action to mitigate potential compromise. Those who entered credentials or financial information should assume their data has been exposed and initiate password resets across all accounts where identical or similar credentials were used. System scans using updated security tools are recommended to detect any secondary payloads or malware introduced during the visit. Browser caches and saved form data should be cleared to remove any residual traces of interaction with the site. Given the domain’s high-risk classification and offline status, affected users should monitor associated accounts for unauthorized activity and report any suspicious transactions to relevant financial institutions.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание