الانتقال إلى تقرير الأمان
أمن المجال وذكاء التهديدات
jtx.network favicon

jtx.network

“Even geduld...”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 6/89 Spamhaus DBL: DBL_PHISH تطابقات القائمة السوداء المخزنة: 2 انتحال العلامة التجارية: Unknown
11/07/2026 غير معروف 2 Reports Sent CDN
Actions API
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 6. قوائم الحظر العامة التي تبلغ عن تطابق: 2. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
ملخص التقرير

jtx.network — المحتوى غير متوفر. انتحال العلامة التجارية: Unknown; نوع الاحتيال: Crypto Drainer. ملخص الأدلة: VirusTotal 6/89 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); URLQuery 2 det.; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. مسجّل النطاق: Dynadot.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة

حرج
الدرجة
100/100

This domain, jtx.network, is identified as an active crypto drainer phishing infrastructure targeting cryptocurrency wallet users. Analysis indicates the site employs deceptive wallet connection prompts and transaction signing requests to siphon digital assets from victims. No direct brand impersonation is observed, but the domain mimics legitimate decentralized application interfaces to facilitate unauthorized fund transfers. The presence of a drainer kit is inferred from behavioral patterns and historical associations with similar malicious domains. Infrastructure analysis reveals the following technical indicators: the domain is flagged by 4 out of 95 security vendors on VirusTotal, indicating moderate detection but persistent risk. The domain was registered through an undisclosed registrar, resolving to IP address 104.21.81.193, a Cloudflare proxy endpoint. Creation date metadata is obfuscated, but passive DNS records suggest recent deployment. Google Safe Browsing (GSB) currently does not list the domain, though it appears on two independent security blocklists. Additional enforcement actions include active blocking by wallet security extensions and decentralized threat intelligence feeds. The domain remains operational and poses an elevated risk to users engaging with cryptocurrency platforms. Immediate response actions include revocation of the SSL certificate issued by Google Trust Services, though this has not yet been executed. Users are advised to treat all interactions with jtx.network as hostile and to verify wallet addresses through trusted sources before executing transactions. Remaining risk includes potential exposure to users unaware of the domain's malicious status, particularly those redirected from compromised advertising networks or social engineering campaigns. Continued monitoring is recommended to track infrastructure changes or shifts in detection coverage.

VirusTotal
VirusTotal
6 det.
URLQuery
URLQuery
2 det.
شهادة TLS
Google Trust Services
العمر
3 mo New
الحالة المرصودة
المحتوى غير متوفر
PhishDestroy
قائمة الإتلاف
مدرج
Reports Sent
2
نطاق تغطية البيانات VirusTotal 6 / 89 URLQuery 2 det. OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل TLS valid certificate, 78d WHOIS 3 mo old لقطة شاشة 3 captures · 2 sources
Abuse Report Escalation History · 2 reports over 26 days · click to expand
PhishDestroy does not flood registrars. Follow-up reports are sent only when one of the following is true: a user-initiated re-report was submitted via our public form, our monitoring detected the domain resurfacing in a search engine result or third-party feed, or our live-checker confirmed the domain remains technically active and still exhibits fraudulent behaviour. Each escalation below represents an independent trigger — not automated noise.
2 abuse reports filed over 71 days — eventually taken down
Dynadot Inc was notified 2 times before the domain was removed. ICANN Compliance was CC’d on at least one escalation — receipt of each complaint is therefore on the record.
2
reports
71
days
ICANN CC
  1. Report #1 ICANN CC Jul 11, 2026 · 07:50 UTC
    ESCALATION #1 (0h active): Phishing - jtx[.]network
    abuse@dynadot.com abuse@identitydigital.com compliance@icann.org
  2. Report #2 ICANN CC 621h still active Aug 6, 2026 · 05:47 UTC
    ESCALATION #2 (621h active): Phishing - jtx[.]network
    abuse@dynadot.com abuse@identitydigital.com compliance@icann.org
ICANN RAA §3.18 requires accredited registrars to publish an abuse point-of-contact and take reasonable and prompt steps in response to reports of illegal activity. The timeline above documents delivered reports — registrar acknowledgement and takedown timing are independently verifiable via the archived email threads on request.

Forensic History & Detection Timeline

This timeline displays historical security and status checkpoints observed by the PhishDestroy automated monitoring network. It records domain lifecycle updates, scanner changes, and threat telemetry over time.
  1. Domain Status Transition Aug 7, 2026 · 00:14 UTC
    Domain state transitioned from dead to alive.
  2. Domain Status Transition Aug 6, 2026 · 00:24 UTC
    Domain state transitioned from alive to dead.

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
18/18
Initial Abuse Report (#1)
Sent to 3 abuse contacts at Dynadot Inc with forensic evidence
abuse@dynadot.comabuse@identitydigital.comcompliance@icann.org
11/07/2026
ICANN Escalation #2
Escalation #2 sent to 3 recipients including ICANN Compliance — follow-up record after a previous report
abuse@dynadot.comabuse@identitydigital.comcompliance@icann.org
06/08/2026
2 Reports Filed
2 report records were stored over 71 days; current observed status: المحتوى غير متوفر

حالة قوائم الحظر العامة

Evasion analysis

Cloaking & traffic-distribution check

Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.

Stored cloaking flag
Not yet scanned
Last cloaking scan

Scanner note: dns_error: raw=dns_error; via=local_dns_prefilter

Live TDS fingerprint check
Seven Keitaro fingerprints plus a crawler-versus-browser comparison, run from the PhishDestroy scanner when this section scrolls into view.
Waiting

لقطة محفوظة · 3 sources

عنوان الصفحة
Even geduld...
شهادة TLS
Valid transport encryption · صادرة عن Google Trust Services · valid for 78 days

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مسجّل النطاق Dynadot US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@dynadot.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ jtx.network →
عنوان IP 188.114.96.3 CDN
الموقع الجغرافيCA Toronto, CA
الشبكةAS13335 · CloudFlare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التسجيلتم إنشاؤه 29/06/2026 (83d · New) Expires 29/06/2027
الوقت حتى أول تعذّر للوصول 26 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
Minimum notice count 2 is the number of stored outgoing report records for this domain. It does not by itself prove acknowledgement or action by a recipient.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
ICANN RAA §3.18 The history below lists stored escalation records and timestamps. It does not by itself establish receipt, acknowledgement, compliance, or enforcement by any recipient.
التفاصيل التقنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف11/07/2026
DOM Analysisanalyzed 11/07/2026score 90/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://jtx.network/
خوادم الأسماءelle.ns.cloudflare.comgerald.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 29/06/2026scanned 12/07/2026
معرّف القضية
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
التقنيات · 2 identified
Detected via Cloudflare Radar · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

6 / قام موردو الأمان 89 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 6 detections
alphaMountain.ai
CRDF
Forcepoint ThreatSeeker
Fortinet
Gridinsoft
SOCRadar
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of jtx.network · checked Jul 11, 2026

97
Good
Performance
FCP
0.76s
First Contentful Paint
LCP
2.42s
Largest Contentful Paint
CLS
0.003
Cumulative Layout Shift
TBT
135ms
Total Blocking Time
SI
1.09s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

لقطة الأدلة المرسلة
Sent: Ledger records: 1 Case ID: PD-1783749018-jtx.network Recipient: abuse@dynadot.com
URLScan evidence VirusTotal evidence
Blocklist hits included with submission: MetaMask, SEAL
PDF notice generated
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/jtx.network"
  title="PhishDestroy threat report for jtx.network"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>