Is topup .pk safe?
http://topup.pk/
Garena-branded top-up site shows mixed security signals
topup.pk presents itself as the official Garena top-up center for Free Fire in-game purchases. The page displays a login form for player ID and third-party account options, plus a top-up amount selector. Five antivirus engines flag the domain as malicious or phishing, yet major browser blocklists reports no threat. The site uses a valid TLS certificate and is hosted on Garena infrastructure.
01 · Investigation Brief
Investigation Brief
topup.pk presents itself as the official Garena top-up center for Free Fire in-game purchases. The page displays a login form for player ID and third-party account options, plus a top-up amount selector. Five antivirus engines flag the domain as malicious or phishing, yet major browser blocklists reports no threat. The site uses a valid TLS certificate and is hosted on Garena infrastructure.
What the site appears to do
The captured page shows a branded header reading 'Garena | Official Top Up Center' and a prominent Free Fire banner offering a 40% membership return. Below the banner is a login panel that accepts a Free Fire Player ID or social login buttons (Facebook, Google, X, VK, Apple). A second section labeled 'Top-up Amount' is partially visible, indicating the site is designed to sell in-game currency.
Strongest evidence and limitations
Adverse antivirus detections come from five engines (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, Forcepoint ThreatSeeker, Fortinet) with two explicitly labeling the domain as phishing. The hosting IP belongs to Garena Online Pte Ltd and carries only a low abuse score of 2/100. major browser blocklists returned no warning. The TLS certificate is valid and issued by DigiCert. No credential-harvesting forms beyond the expected login were observed in the saved page.
Practical user impact
Users who enter their Free Fire Player ID or link a social account are proceeding with an ordinary top-up flow. The page does not request wallet approvals, seed phrases, or additional personal data beyond what is typical for game-account login. Because the domain carries multiple phishing detections, users should weigh the risk of account compromise against the convenience of the service.
Why the score is 62
Saved antivirus evidence is adverse but is not fresh enough for a current conviction. Coverage remains separate so missing sources cannot be mistaken for clean results.
02 · Security Evidence
Security evidence
Antivirus Engines
5/ 92
detectionsSaved result - stale
5 engines flagged this URL
Every saved adverse engine is listed below. The full provider matrix remains available for audit.
- Malicious
- 5
- Suspicious
- 0
- Total
- 92
| Engine | Finding |
|---|---|
| ADMINUSLabsMalicious | malicious |
| alphaMountain.aiMalicious | malicious |
| Chong Lua DaoMalicious | malicious |
| Forcepoint ThreatSeekerMalicious | phishing |
| FortinetMalicious | phishing |
All 92 engine results
- ADMINUSLabs - malicious - Malicious
- alphaMountain.ai - malicious - Malicious
- Chong Lua Dao - malicious - Malicious
- Forcepoint ThreatSeeker - phishing - Malicious
- Fortinet - phishing - Malicious
- 0xSI_f33d - unrated - Clean
- Abusix - clean - Clean
- Acronis - clean - Clean
- AILabs (MONITORAPP) - clean - Clean
- AlienVault - clean - Clean
- AlphaSOC - unrated - Clean
- Antiy-AVL - clean - Clean
- ArcSight Threat Intelligence - unrated - Clean
- AutoShun - unrated - Clean
- Bfore.Ai PreCrime - unrated - Clean
- BitDefender - clean - Clean
- Bkav - unrated - Clean
- BlockList - clean - Clean
- Blueliv - clean - Clean
- Certego - clean - Clean
- ChainPatrol - unrated - Clean
- CINS Army - clean - Clean
- Cluster25 - unrated - Clean
- CRDF - clean - Clean
- Criminal IP - unrated - Clean
- CSIS Security Group - unrated - Clean
- CTX AI - clean - Clean
- Cyan - unrated - Clean
- Cyble - clean - Clean
- CyRadar - clean - Clean
- desenmascara.me - clean - Clean
- DNS8 - unrated - Clean
- Dr.Web - clean - Clean
- EmergingThreats - clean - Clean
- Emsisoft - clean - Clean
- Ermes - unrated - Clean
- ESET - clean - Clean
- ESTsecurity - clean - Clean
- Fortra - unrated - Clean
- G-Data - clean - Clean
- GCP Abuse Intelligence - unrated - Clean
- Google Safe Browsing - clean - Clean
- GreenSnow - clean - Clean
- GreyNoise - unrated - Clean
- Gridinsoft - unrated - Clean
- Guardpot - unrated - Clean
- Heimdal Security - clean - Clean
- Hunt.io Intelligence - unrated - Clean
- IPsum - clean - Clean
- Juniper Networks - clean - Clean
- K7AntiVirus - unrated - Clean
- Kaspersky - clean - Clean
- LevelBlue - clean - Clean
- Lionic - clean - Clean
- Lumu - unrated - Clean
- Malwared - clean - Clean
- MalwarePatrol - clean - Clean
- MalwareURL - unrated - Clean
- Mimecast - unrated - Clean
- Netcraft - unrated - Clean
- OpenPhish - clean - Clean
- PhishFort - unrated - Clean
- Phishing Database - clean - Clean
- Phishtank - clean - Clean
- PREBYTES - clean - Clean
- PrecisionSec - unrated - Clean
- Quick Heal - clean - Clean
- Quttera - clean - Clean
- Rising - clean - Clean
- SafeToOpen - unrated - Clean
- Sangfor - clean - Clean
- Sansec eComscan - unrated - Clean
- Scantitan - clean - Clean
- SCUMWARE.org - clean - Clean
- Seclookup - clean - Clean
- Snort IP sample list - unrated - Clean
- SOCRadar - unrated - Clean
- Sophos - clean - Clean
- StopForumSpam - clean - Clean
- Sucuri SiteCheck - clean - Clean
- ThreatHive - clean - Clean
- URLhaus - clean - Clean
- URLQuery - unrated - Clean
- Viettel Threat Intelligence - clean - Clean
- VIPRE - unrated - Clean
- ViriBack - clean - Clean
- VX Vault - clean - Clean
- Webroot - clean - Clean
- Xcitium Verdict Cloud - clean - Clean
- Yandex Safebrowsing - clean - Clean
- ZeroCERT - clean - Clean
- ZeroFox - unrated - Clean
Security Scans
Checked against the browser threat feeds available to this scan — no hit.
What we observed
Loading saved screenshot
Preparing the saved page preview.
Visual context from the captured page
The saved image was reviewed for deceptive controls, visual impersonation, fake urgency, and other scam interface patterns.
03 · Investigation Story
Investigation story
What the site claims
The page presents itself as a service operating on topup.pk.
What we observed
The page content was captured and checked alongside 92 antivirus results.
What independent research found
The search completed without a material external warning or corroborating report.
What remains unverified
4 of the five core capabilities did not complete, so those gaps remain visible in the coverage ledger.
What kind of site and risk is this?
Threat category
No threat category confirmed
Service and business model
Unknown
Observed behavior
Evidence behind this classification
- 01Saved antivirus evidence is adverse but is not fresh enough for a current conviction.
- 02major browser blocklists returned no threat warning
- 03Valid TLS certificate from DigiCert
Web research findings
Independent findings for topup.pk, including public complaints, named review sources, registration records, and look-alike-domain evidence. A missing result is shown as unverified, never converted into a clean bill of health.
No independently sourced scam reports or credibility records were found for topup.pk. That is common for new or low-traffic sites and does not clear the site.
Reputation Sources
How this domain rates across independent threat-intelligence and blocklist providers.
04 · Domain & Infrastructure
Domain & infrastructure
The plumbing behind the site — who registered it, how it’s encrypted, where it’s hosted, and where it links out. A valid certificate or a calm server doesn’t mean the business is honest — scam sites pass these checks too. Use this to corroborate the verdict, not to overturn it.
Infrastructure map
How the saved page connected to the wider web.
- Domaintopup.pk
- Redirects totopup.pk
- Hosted byGarena Online Pte Ltd
- Referencescontentgarena-a.akamaihd.net · cdn-gop.garenanow.com
Contact Verification
Saved contact details can help identify the operator. Their presence supports traceability; it does not prove the business is trustworthy.
- No direct contact email found on the captured page.
Domain & Encryption
Redirect Chain
- 1301http://topup.pk/
- 2200https://topup.pk/
Server Reputation
Referenced Domains
Outbound domains this page links to or loads resources from. Each links to its own security scan.
05 · Evidence Ledger
Evidence ledger
- Antiviruspartial
- Browser threat feedcomplete
- Page contentpartial
- Analysispartial
- Visual evidenceunavailable
The conclusion is supported by the evidence saved with this report.
Technical threat
suspiciousMalware, phishing, credential theft and hostile infrastructure.
Additional evidence review
Operator / customer risk
unknownComplaints, withdrawals, business conduct and commercial traps.
No confirmed evidence in this dimension.
Source coverage and freshness
Status shows whether usable evidence was saved; finding shows what that evidence observed.
| Source | Result | Completion | Finding | Freshness |
|---|---|---|---|---|
| Antivirus | 5 of 92 engines flagged | Limited | Adverse | stale fallback · Aug 3, 2026 |
| Browser protection | No browser threat-list match | Completed | No adverse finding | Not available |
| Page content | Page fetched · HTTP 200 | Limited | No saved finding | Not available |
| Visual evidence | The saved page capture contained descriptive context only | Completed | No adverse finding | Not available |
| Independent research | The search completed without a material external finding | Completed | No adverse finding | Not available |
- Antivirus
- Result5 of 92 engines flagged
- CompletionLimited
- FindingAdverse
- Freshnessstale fallback · Aug 3, 2026
- Browser protection
- ResultNo browser threat-list match
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
- Page content
- ResultPage fetched · HTTP 200
- CompletionLimited
- FindingNo saved finding
- FreshnessNot available
- Visual evidence
- ResultThe saved page capture contained descriptive context only
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
- Independent research
- ResultThe search completed without a material external finding
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
07 · Safety FAQ
Safety FAQ
Common questions, answered directly from the scan data above — so the answers reflect the saved verdict and evidence in this report.
Is topup.pk a scam or is it safe?
Is topup.pk safe to use?
Has topup.pk been flagged by antivirus engines?
Is topup.pk on any phishing or malware blacklists?
Does topup.pk have a valid SSL certificate?
Where is topup.pk hosted?
How often is the topup.pk report updated?
08 · Final Verdict
Final verdict
Garena-branded top-up site shows mixed security signals
topup.pk presents itself as the official Garena top-up center for Free Fire in-game purchases. The page displays a login form for player ID and third-party account options, plus a top-up amount selector. Five antivirus engines flag the domain as malicious or phishing, yet major browser blocklists reports no threat. The site uses a valid TLS certificate and is hosted on Garena infrastructure.
09 · Community

0 community contributions
Share what happened, what the site requested, and what others should watch for.
Community reviews never change the scanner verdict.