jupsolver[.]com[.]ng
Phishing- und Sicherheitsprüfung für jupsolver.com.ng
“Instant | Jupiter”
jupsolver.com.ng — Letzter bekanntermaßen aktiv (HTTP 301). Markenidentität: Jupiter; Betrugstyp: Crypto Scam. Zusammenfassung der Beweislage: VirusTotal 12/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, Fortinet); Google Safe Browsing flagged; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 96/100. Registrar: HostAfrica.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain jupsolver.com.ng was registered on February 21, 2026 through HostAfrica and is currently resolved to the Cloudflare IP 172.67.213.239 (AS13335, United States). DNS resolution is handled by raphaela.ns.cloudflare.com and coby.ns.cloudflare.com, indicating the use of Cloudflare’s CDN and protection services. An HTTP 301 redirect is observed, and the presented SSL certificate is issued by Google Trust Services under the WE1 certificate profile, confirming the presence of a valid TLS termination point. The page title returned by the server is "Instant | Jupiter," which aligns with the declared brand target of Jupiter and the reported scam type of a crypto‑related scheme.
Google Safe Browsing flags the domain for social engineering, and VirusTotal reports that 12 of 93 security vendors have flagged the host, reinforcing the malicious assessment. Independent blocklists, including PhishDestroy, MetaMask, ScamSniffer, and SEAL, have already added the domain to their deny lists, and overall the site appears on four security blocklists. A Gridinsoft trust score of 0/100 further indicates a lack of credibility. The infrastructure analysis shows no additional hosting clues beyond Cloudflare’s global edge network, and the domain’s current status remains active.
While the exact content of the landing page has not been publicly captured, the combination of brand impersonation, crypto‑scam labeling, and multiple vendor detections suggests a high‑risk threat targeting users of the Jupiter brand. Defenders should block the domain at DNS and proxy layers, monitor outbound connections to the associated IP, and update endpoint and email security solutions with the observed indicators of compromise. Continuous observation is advised to detect any evolution of the site’s content or additional infrastructure changes.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
VirusTotal-Analyse
Archivierte Beweise
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt