jupsolver[.]com[.]ng
Analyse phishing et sécurité de jupsolver.com.ng
“Instant | Jupiter”
jupsolver.com.ng — Dernier actif connu (HTTP 301). Usurpation de l'identité de la marque : Jupiter; Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 12/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, Fortinet); Google Safe Browsing flagged; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 96/100. Bureau d’enregistrement: HostAfrica.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain jupsolver.com.ng was registered on February 21, 2026 through HostAfrica and is currently resolved to the Cloudflare IP 172.67.213.239 (AS13335, United States). DNS resolution is handled by raphaela.ns.cloudflare.com and coby.ns.cloudflare.com, indicating the use of Cloudflare’s CDN and protection services. An HTTP 301 redirect is observed, and the presented SSL certificate is issued by Google Trust Services under the WE1 certificate profile, confirming the presence of a valid TLS termination point. The page title returned by the server is "Instant | Jupiter," which aligns with the declared brand target of Jupiter and the reported scam type of a crypto‑related scheme.
Google Safe Browsing flags the domain for social engineering, and VirusTotal reports that 12 of 93 security vendors have flagged the host, reinforcing the malicious assessment. Independent blocklists, including PhishDestroy, MetaMask, ScamSniffer, and SEAL, have already added the domain to their deny lists, and overall the site appears on four security blocklists. A Gridinsoft trust score of 0/100 further indicates a lack of credibility. The infrastructure analysis shows no additional hosting clues beyond Cloudflare’s global edge network, and the domain’s current status remains active.
While the exact content of the landing page has not been publicly captured, the combination of brand impersonation, crypto‑scam labeling, and multiple vendor detections suggests a high‑risk threat targeting users of the Jupiter brand. Defenders should block the domain at DNS and proxy layers, monitor outbound connections to the associated IP, and update endpoint and email security solutions with the observed indicators of compromise. Continuous observation is advised to detect any evolution of the site’s content or additional infrastructure changes.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif