jupsolver[.]com[.]ng
Проверка домена jupsolver.com.ng на фишинг и безопасность
“Instant | Jupiter”
jupsolver.com.ng — Последний известный активный (HTTP 301). Олицетворение бренда: Jupiter; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 12/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, Fortinet); Google Safe Browsing flagged; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 96/100. Регистратор: HostAfrica.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
The domain jupsolver.com.ng was registered on February 21, 2026 through HostAfrica and is currently resolved to the Cloudflare IP 172.67.213.239 (AS13335, United States). DNS resolution is handled by raphaela.ns.cloudflare.com and coby.ns.cloudflare.com, indicating the use of Cloudflare’s CDN and protection services. An HTTP 301 redirect is observed, and the presented SSL certificate is issued by Google Trust Services under the WE1 certificate profile, confirming the presence of a valid TLS termination point. The page title returned by the server is "Instant | Jupiter," which aligns with the declared brand target of Jupiter and the reported scam type of a crypto‑related scheme.
Google Safe Browsing flags the domain for social engineering, and VirusTotal reports that 12 of 93 security vendors have flagged the host, reinforcing the malicious assessment. Independent blocklists, including PhishDestroy, MetaMask, ScamSniffer, and SEAL, have already added the domain to their deny lists, and overall the site appears on four security blocklists. A Gridinsoft trust score of 0/100 further indicates a lack of credibility. The infrastructure analysis shows no additional hosting clues beyond Cloudflare’s global edge network, and the domain’s current status remains active.
While the exact content of the landing page has not been publicly captured, the combination of brand impersonation, crypto‑scam labeling, and multiple vendor detections suggests a high‑risk threat targeting users of the Jupiter brand. Defenders should block the domain at DNS and proxy layers, monitor outbound connections to the associated IP, and update endpoint and email security solutions with the observed indicators of compromise. Continuous observation is advised to detect any evolution of the site’s content or additional infrastructure changes.
Охват данных12 recorded checks
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.