MALICIOUS — HIGH
kittysnipers[.]com
This domain presents itself as a Solana trading bot named Kitty Sniper but is a brand impersonation scheme targeting Jupiter, a legitimate cryptocurrency platform.
- VirusTotal
- 2/95
- Blocklists
- 1 · ScamSniffer
- Verfügbarkeit
- Inhalt nicht verfügbar · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
kittysnipers.com — Inhalt nicht verfügbar (HTTP 502). Markenidentität: Jupiter; Betrugstyp: Wallet/seed Phishing. Zusammenfassung der Beweislage: VirusTotal 2/95 (Gridinsoft, SOCRadar); 1 external blocklist match (ScamSniffer); PhishDestroy score 65/100. Registrar: NameSilo.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Evidence Analysis
This domain presents itself as a Solana trading bot named Kitty Sniper but is a brand impersonation scheme targeting Jupiter, a legitimate cryptocurrency platform. Visitors are likely to encounter fraudulent interfaces designed to mimic Jupiter’s trading environment, with the intent to harvest credentials, private keys, or misdirect funds to attacker-controlled wallets. The site’s marketing language—promising 'more profits, less time'—aligns with common social engineering tactics used to exploit users seeking automated trading solutions. Given the elevated risk level and offline status, this domain was likely part of an active scam campaign before being disrupted. Analysis indicates the domain was registered on September 11, 2025, through NameSilo, LLC, a registrar frequently associated with low-reputation domains. It resolves to the IP address 172.67.173.80, which is part of a cloud hosting provider’s network, a common tactic to obscure infrastructure ownership. At the time of assessment, 2 out of 95 security vendors on VirusTotal flagged the domain as malicious, while Gridinsoft assigned a trust score of 0/100. Additionally, the domain appears on two security blocklists and is explicitly blocked by PhishDestroy and ScamSniffer, further confirming its malicious classification. The combination of recent registration, brand impersonation, and low detection but high-risk scoring suggests a targeted operation rather than widespread phishing. Users who visited kittysnipers.com should assume potential exposure of sensitive information, particularly if they connected a cryptocurrency wallet or entered credentials. Immediate actions include revoking any wallet permissions granted to the site, monitoring connected accounts for unauthorized transactions, and rotating passwords for any platforms where the same credentials were reused. If funds were transferred, report the incident to the relevant blockchain explorer and local cybercrime authorities, providing transaction hashes and timestamps. For future protection, verify domain registration dates via WHOIS and cross-check URLs against known blocklists before interacting with trading bots or financial platforms. The use of hardware wallets or isolated browser sessions for cryptocurrency transactions can reduce exposure to similar threats.
Datenabdeckung12 recorded checks
Erkenntnisse zur Netzwerksicherheit Registrar context
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Forensische Erkenntnisse
VirusTotal-Analyse
Nachweise und externe BerichteIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.