blog-juslend[.]org
“JustLend DAO | First Official Lending Platform on TRON — Borrow, Lend & Earn”
blog-juslend.org — Conteúdo indisponível. Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 2/91 (ADMINUSLabs, Kaspersky); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. Registrador: GoDaddy.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain is assessed as a high-risk fake login threat and remains active at the time of analysis. Infrastructure review indicates a recently established web presence designed to resemble a legitimate financial or account-based service. Such sites commonly attempt to collect authentication credentials, wallet access information, recovery phrases, or other sensitive user data through deceptive interfaces. The domain resolves to IP address 186.2.175.35 and is hosted from an IP geolocated in BZ under AS59692. Multiple independent security sources have blocked or listed the domain, increasing confidence that user interaction presents a meaningful security risk.
Analysis indicates several technical indicators consistent with elevated threat exposure. The domain was created on April 03, 2026, making it relatively new compared with established online services. Registration was completed through GoDaddy.com, LLC. Security telemetry shows that 2 out of 95 security vendors currently flag the domain. While the detection ratio alone is not conclusive, it should be evaluated alongside other evidence. The site remains active, appears on 3 security blocklists, and has been blocked by multiple security organizations. The combination of recent registration, active status, blocklist presence, and reported abuse indicators supports a high-risk classification. SSL deployment through Let's Encrypt / R12 provides encrypted transport but does not validate trustworthiness or legitimacy.
Users who visited this domain should exercise caution and assume that any submitted credentials or sensitive information may have been exposed. If account credentials, wallet details, authentication codes, or recovery information were entered, immediate credential rotation is recommended. Affected users should review account activity, enable stronger authentication controls where available, and monitor for unauthorized access attempts. Systems that interacted extensively with the site should be scanned for additional threats and browser-stored credentials should be reviewed. Organizations may consider blocking the domain and associated infrastructure while continuing to monitor for related indicators and follow-on activity.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias · 2 identified
Modernizr is a JavaScript library that detects the features available in a user's browser.
modernizr.com 100% de confiançaDDoS-Guard is a Russian Internet infrastructure company which provides DDoS protection, content delivery network services, and web hosting services.
ddos-guard.net 100% de confiançaAnálise do VirusTotal
Evidências e relatórios externos
PD-20260530-60A8B0 Recipient: abuse@godaddy.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo