Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
jupag[.]pro
“JUP â Claim Your Allocation”
Résumé des preuves
Domain jupag.pro has been identified as an active brand impersonation threat targeting the Jupiter platform. Current analysis indicates this domain is actively engaged in deceptive practices, masquerading as the legitimate Jupiter brand to deceive users and harvest sensitive credentials or financial data. The threat is classified as under investigation due to limited vendor detection, but early indicators suggest malicious intent given its appearance on multiple blocklists and known impersonation behavior. All users are advised to exercise extreme caution and avoid any interaction with this domain until further notice. jupag.pro is currently flagged by 5 of 95 VirusTotal vendors, demonstrating a concerning lack of detection despite its presence on 2 security blocklists. This domain resolves to IP address 104.21.83.58 and utilizes a Let's Encrypt SSL certificate to appear legitimate. While the exact registrar and creation date are not provided, the SSL issuance and IP assignment suggest recent operational activity. Trust scores for this domain remain critically low, and it has already been blocked by security solutions including Enkrypt and ScamSniffer. The current status of this domain remains active, with no signs of takedown or remediation. Given the brand impersonation tactics and low detection rate, the risk of user exposure to phishing or credential harvesting attacks is elevated. Security teams and end users should immediately block jupag.pro at the network and host levels. Additionally, any employees or customers who may have interacted with this domain should be notified to reset credentials, monitor for unauthorized transactions, and report suspicious activity to Jupiter’s official security channels. Further intelligence and IOCs will be provided as the investigation progresses.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
BKF-20260708-57- Artefact PDF
- Preuve PDF
Data Coverage
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | jupag.pro |
malicious | Sinkholed |
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 10/08/2026
6 sources externes surveillées Aucune correspondance
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
4 technologies identifiées avec une forte confiance
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of jupag.pro · checked Apr 21, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif