pump-gift[.]fun
Перевірка домену pump-gift.fun на фішинг і безпеку
“Pump.fun - Airdrop”
pump-gift.fun — Неперевірений. Уособлення бренду: Discord; Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 2/93 (Fortinet, SOCRadar); Spamhaus DBL_PHISH; PhishDestroy score 56/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain pump-gift.fun was registered on 21 February 2026 through NiceNIC International Group Co., Limited and is served from Cloudflare’s network (nameservers quinton.ns.cloudflare.com and tani.ns.cloudflare.com). DNS resolution points to IP 188.114.96.3, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The site presented a TLS certificate issued by Google Trust Services under the WE1 root, confirming the use of HTTPS. Traffic was observed over HTTP/3, indicating modern CDN delivery.
The only visible page title was “Pump.fun – Airdrop”, and the infrastructure is associated with an “Airdrop Scam” kit that targets Discord users through wallet/seed phishing. The page title and kit suggest the attacker attempts to lure victims with a fake airdrop, requesting Discord‑related credentials or cryptocurrency seed phrases. VirusTotal recorded detections from 2 of 93 scanning engines, and the domain appears on a single security blocklist (PhishDestroy). The current operational status is offline, but the hosting and certificate remain active, allowing rapid re‑activation.
No additional public reputation sources such as Google Safe Browsing or OTX were cited in the available intelligence. Defenders should add pump-gift.fun to blocklists at the DNS and proxy level, monitor for any resurrection of the site, and enforce strict verification of Discord‑related communications, especially any unsolicited airdrop offers. Because the infrastructure relies on Cloudflare, similar future campaigns may reuse the same nameserver configuration; security teams should watch for new domains registered with NiceNIC that resolve to Cloudflare IPs and present Discord‑oriented content. Continuous threat‑intel feeds should be consulted for updates on the Airdrop Scam kit, and incident response playbooks should include steps for handling wallet or seed‑phrase phishing attempts.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 02:47:39 UTC
Технології · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
PD-20260124-9EAB4A Recipient: abuse@nicenic.net Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога