vote-jito[.]network
“Jito MEV Harvesting | Harvest Liquid Staked SOL - Maximise your Revenue”
Analysis of vote-jito.network indicates a brand impersonation campaign targeting Jito, a liquid staking protocol for Solana. The domain was registered on March 13, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com and resolved to IP 188.114.96.3, hosted on Cloudflare's infrastructure (AS13335). No SSL certificate was detected, increasing the risk of unencrypted data interception. The page title, 'Jito MEV Harvesting | Harvest Liquid Staked SOL - Maximise your Revenue,' explicitly references Jito’s MEV (Maximal Extractable Value) harvesting services, suggesting an attempt to deceive users into engaging with fraudulent staking or revenue-maximization offers. The domain appears on a single security blocklist, PhishDestroy, and was flagged by 1 of 95 security vendors on VirusTotal, indicating limited but confirmed detection.
Technologies detected include Cloudflare Browser Insights and HTTP/3, consistent with Cloudflare-hosted infrastructure. Nameservers emily.ns.cloudflare.com and vicente.ns.cloudflare.com further confirm Cloudflare’s role in the domain’s resolution. As of July 22, 2026, the domain is offline, though its prior operational status and impersonation of a cryptocurrency service warrant continued monitoring. Defenders should treat this domain as a confirmed phishing threat targeting Jito users.
Blocklist the domain and its resolving IP (188.114.96.3) at network and endpoint levels. Given the domain’s association with Cloudflare, review logs for connections to the IP or nameservers to identify potential prior compromise. No additional payloads or redirects were confirmed in the available data, but historical traffic to this domain should be investigated for credential theft or unauthorized transactions. The absence of SSL and minimal vendor detections do not reduce the risk; brand impersonation domains often evade initial scans before being widely flagged.
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of vote-jito.network · checked Mar 13, 2026
Evidence & External Reports
PD-20260313-5174E7 Recipient: abuse@publicdomainregistry.com Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive