memecoinpump[.]fun
memecoinpump.fun 网络钓鱼与安全检查
“Pump.fun - Airdrop”
memecoinpump.fun — 内容不可用 (HTTP 502). 品牌冒充:Discord; 诈骗类型:Wallet/seed Phishing; Drainer: Wallet Connect Abuse. 证据摘要: VT 0 det. (total unavailable); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 3 (Polkadot, Enkrypt, Codeesura); PD 85/100. 注册商: NameSilo.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy first observed memecoinpump.fun on Sep 18, 2025. Stored content metadata identifies Discord as the apparent target. The captured page title is “Pump.fun - Airdrop”. Page analysis recorded additional brand references to Foundation, Jupiter, Orca, Raydium, Revolut, Solana, and Telegram. Stored page analysis classifies the content as wallet/seed phishing. Campaign clustering links the hostname to the Airdrop Scam kit. Drainer analysis recorded Wallet Connect Abuse. Current evidence score: 85/100 (critical).
Positive findings are stored from 3 sources: Polkadot, Enkrypt, and Codeesura. Polkadot, Enkrypt, and Codeesura listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 22:20 UTC. Non-positive and contextual checks: URLQuery recorded no positive detection; no observation timestamp was retained. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC. URLScan completed without a malicious verdict (score 0) on Jul 29, 2026 at 03:40 UTC. VirusTotal was checked, but a reliable engine total is unavailable on Feb 23, 2026 at 05:38 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:19 UTC; content was unavailable. Registration records for the domain list NameSilo, LLC as the registrar and Sep 15, 2025 as the creation date. Registration preceded first observation by 2 days. At collection time, the hostname resolved to 104.21.81.197 on AS13335 (CLOUDFLARENET, US). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. DOM analysis on Mar 24, 2026 at 05:24 UTC returned 20/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. Wallet and Telegram IoC extraction on Aug 2, 2026 at 04:38 UTC retained no format-valid indicators.
The content indicators and 3 positive source findings support the current Discord-themed wallet/seed phishing classification.
网络安全情报 Registrar context
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
ICANN 收到了钱。问责却没有到来。
对于这个 gTLD,上述注册商依据与 ICANN 签订的合同运营。ICANN 收取与注册、续费和转移相关的年度费用、浮动费用及按交易计收的费用。
认证:已变现。问责:请稍后再来查看。
接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。
证据与外部报告
您是否受到本网站的影响?
如果您与此域交互、输入个人信息或连接加密货币钱包,请立即采取行动。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控针对受害者的建议与指导
据估计 $51 billion 于2024年流入非法加密货币钱包(source). 如果你曾与 memecoinpump.fun — 立即行动。
我应该立即采取什么措施?
紧急
- 撤销令牌授权 — use revoke.cash 撤销授予恶意智能合约的访问权限
- 转移剩余资金 迁移到一个全新的钱包。该受损钱包已不再安全
- 更改所有密码 — 电子邮件、Exchange 账户,以及任何使用同一密码的账户
- 启用双因素认证 使用身份验证器应用(而非短信)。禁用基于短信的恢复功能
- 冻结卡片 如果您在钓鱼网站上输入了银行信息
我应该为报告收集哪些信息?
联邦调查局(FBI)指南
据 联邦调查局,其中最重要的细节是交易数据:
- 加密货币地址 — 诈骗分子的钱包(例如,
0x5856...35985) - 金额及加密货币类型 — 确切金额(例如:1.02345 ETH、0.5 BTC、500 USDT)
- 交易 ID(哈希值) — 唯一的区块链交易标识符
- 确切日期和时间 — 每笔交易的详情以及与诈骗者的首次接触
- 屏幕截图 — 诈骗网站、聊天消息、电子邮件、钱包交易、社交媒体
- 所有网址和域名 诈骗者使用的(包括
memecoinpump.fun) - 通信 — 诈骗者使用的电子邮件、短信、电话号码、用户名
即使你并不了解所有细节—— 不管怎样都要提交报告. 即使信息不完整,对调查仍有帮助。
我应该向哪里举报这起诈骗?
- 联邦调查局(FBI)IC3 — 互联网犯罪投诉中心(美国联邦举报渠道)
- 欧洲刑警组织 — 欧洲网络犯罪报告(欧盟)
- Chainabuse — 在各交易所和平台上标记诈骗钱包
- 您的加密货币交易所 — notify its fraud team immediately; it may be able to preserve records or restrict funds held on its platform
- 当地警方 — 即使无法立即采取行动,也能留下正式记录
A report is not a guarantee of recovery or investigation, but prompt, accurate transaction data can help authorities and service providers trace the incident.
加密货币诈骗通常是如何运作的?
- 虚假网站 — 与正规网站完全一致的克隆网站,仅域名略有改动
- 恶意批准 — “连接钱包”的提示会使攻击者获得无限的代币消费权限
- 猪的屠宰 — 通过Telegram/WhatsApp/交友软件花数周时间建立信任,随后钱被骗走
- 退款诈骗 — fraudsters pose as recovery agents and demand upfront fees. Never share a seed phrase or pay before independently verifying the provider
- 虚假广告与空投 — 谷歌/社交媒体广告和“免费代币”优惠会导致钱包被掏空
- 利用人工智能实施的诈骗 — 深度伪造、自动化网络钓鱼以及人工智能生成的网站,使得欺诈行为更难被察觉
将来我该如何保护自己?
- 使用硬件钱包 (Ledger、Trezor)。切勿在浏览器钱包中存储大额资金
- 将官方网站添加到书签 — 切勿点击来自电子邮件、私信或广告中的链接
- 阅读每项批准 — 签名前请验证权限。拒绝无限制的批准
- 验证域名 — 查看 PhishDestroy 在进行互动之前,请检查HTTPS、拼写和域名注册时间。
- “好得令人难以置信”=骗局 — 保证收益、名人代言、紧迫的截止日期