jupi-official[.]web[.]app
“Instant | Jupiter”
jupi-official.web.app — Контент недоступен. Олицетворение бренда: Jupiter; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 1/95 (Trustwave); PhishDestroy score 55/100. Регистратор: Google Domains.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of jupi-official.web.app shows a domain that impersonates the Jupiter brand and is linked to a crypto‑scam campaign. The site resolved to IP 199.36.158.100, an address owned by Fastly, Inc. in the United States (AS54113). The hosting stack was identified as Firebase with HTTP/3 and HSTS enabled, and the TLS certificate was issued by Google Trust Services under the WR4 profile, consistent with a Google‑managed hosting environment. The domain was registered through Google LLC, which is typical for Firebase‑based deployments.
When accessed, the server returned an HTTP 404 status and the page title reported “Instant | Jupiter,” confirming the brand reference. VirusTotal recorded a single positive detection out of 95 scanned security vendors, indicating that at least one AV engine flagged the domain as malicious. The domain appears on one public blocklist and is specifically blocked by PhishDestroy, further corroborating its malicious reputation.
Current operational status is offline, suggesting the site has been taken down or is temporarily inaccessible, but the infrastructure artifacts remain observable. Defenders should continue to block the domain at perimeter and endpoint filters, monitor Fastly‑hosted Firebase assets for similar brand‑impersonation patterns, and enforce URL reputation checks against known blocklists. Because the underlying hosting provider is shared, future impersonation attempts may reuse similar infrastructure, so threat‑intel feeds should be updated with the observed certificate details, IP address, and page title for rapid correlation.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 3 identified
Google platform for building mobile and web applications with backend services.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание