jumperexchange[.]eu[.]com
“jumperexchange.eu.com | 522: Connection timed out”
ملخص الأدلة
Analysis of jumperexchange.eu.com shows a newly registered domain (creation date Feb 21 2026) that is actively serving a fake‑exchange phishing campaign. The domain resolves to IP 188.114.96.3, which belongs to AS13335 operated by Cloudflare, Inc. HTTP responses return status 521 and a page title of “jumperexchange.eu.com | 522: Connection timed out,” indicating the front‑end is deliberately inaccessible, a pattern often used to evade automated crawling. The site presents a Google Trust Services / WE1 SSL certificate, yet the Gridinsoft trust score is 0 / 100, reflecting extreme malicious confidence.
Infrastructure profiling reveals the domain is hosted behind Cloudflare with HTTP/3 enabled, and the authoritative nameservers are ns1‑ns4.centralnic.net. Registration details list Instra Corporation Pty Ltd. as the registrar, and the domain appears on a single security blocklist, currently flagged by PhishDestroy. VirusTotal scans show 2 of 95 security vendors flagging the domain, reinforcing its low‑reputation status despite limited vendor coverage. The overall risk rating is high and the operational status remains active.
Defenders should prioritize immediate blocking of jumperexchange.eu.com at perimeter and endpoint layers, and enforce URL filtering to prevent user navigation. Continuous monitoring of the associated IP 188.114.96.3 and its Cloudflare edge nodes is advised, as threat actors may pivot to additional sub‑domains or rotate IPs within the same ASN. Incident response teams should also update internal phishing detection signatures with the observed HTTP 521/522 behavior and the specific page title string to improve detection of similar fast‑flux deployments.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
التقنيات
حُدّدَت تقنيتان عاليتا الثقة
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب