jupiter-portfolio[.]xyz
jupiter-portfolio.xyz — 서버 오류 (HTTP 502). 브랜드 사칭: Jupiter; 사기 유형: Brand Impersonation. 증거 요약: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. 등록기관: NiceNIC.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
The domain jupiter-portfolio.xyz is currently active and being used to harvest login credentials and sensitive personal information from unsuspecting users. When visited, the site mimics a legitimate financial or investment portal—likely targeting individuals interested in cryptocurrency portfolios or trading platforms—by presenting a fake login page. Upon entering credentials or payment details, the stolen data is immediately transmitted to threat actors for use in fraud, identity theft, or further attacks. Security researchers have observed this campaign spreading primarily through email spam and social media impersonation, where messages lure users to the malicious site under the guise of portfolio updates or investment opportunities. PhishDestroy’s analysis confirms this domain is a clear and present threat. The domain was registered on April 09, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED and resolves to IP address 188.114.96.3. It uses a Let’s Encrypt SSL certificate to appear trustworthy. Although the site currently evades detection by most antivirus engines, 2 out of 95 VirusTotal security vendors have flagged it as malicious. This low initial detection rate suggests the campaign may be newly launched or rapidly evolving, allowing it to bypass some filtering systems. If you have visited jupiter-portfolio.xyz, assume your credentials, payment details, or personal information may have been compromised. Immediately change any passwords used on the site, monitor bank accounts for unauthorized transactions, and enable two-factor authentication on all financial and email accounts. Report the domain to your IT security team or platform provider and avoid interacting with any further communications from this source. Consider running a full antivirus scan and reviewing account activity across all platforms where you reused passwords. Early action is critical to prevent follow-on identity theft or financial fraud.
네트워크 보안 인텔리전스 Registrar context
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-05 19:02:39 UTC
VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of jupiter-portfolio.xyz · checked Apr 10, 2026
증거 및 외부 보고서
PD-20260410-878BD6 Recipient: abuse@nicenic.net, abuse@gen.xyz 이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.