jp-ibgroup[.]com
jp-ibgroup.com için kimlik avı ve güvenlik kontrolü
“EXAI TRADE”
jp-ibgroup.com — İçerik kullanılamıyor (HTTP 502). Dolandırıcılık türü: Generic Phishing. Kanıt özeti: VirusTotal 10 detections (engine total unavailable) (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Fortinet); URLQuery 1 alert; Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. Kayıt kuruluşu: Realtime.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
The domain jp-ibgroup.com presents as "EXAI TRADE" based on its page title. The site poses a social engineering threat, as indicated by Google Safe Browsing flagging it for SOCIAL_ENGINEERING. This suggests the site is designed to deceive users into performing actions or disclosing information, typical of fraudulent trading platforms or phishing schemes.
Technical evidence shows the site was flagged by 10 out of 95 VirusTotal vendors, including ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, and Fortinet. It appears on 3 blocklists. The domain was registered on 2026-04-30 through Realtime Register B.V. and is hosted on IP address 172.67.145.44, located in Canada and associated with Cloudflare, Inc. The SSL certificate is issued by Let's Encrypt (E7). Nameservers are emily.ns.cloudflare.com and junade.ns.cloudflare.com.
The domain is currently down or offline. With a GridinSoft trust score of 0 out of 100 and a DOM risk score of 90, the risk level is assessed as high. The combination of social engineering flags, multiple vendor detections, and recent creation date indicates a malicious or fraudulent intent.
Veri kapsamı12 recorded checks
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | jp-ibgroup.com |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 8 identified
ThinkPHP is an open-source PHP framework with MVC structure developed and maintained by Shanghai Topthink Company.
www.thinkphp.cn %100 güvenBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com %100 güvenjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com %100 güvenHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
PD-20260504-E57130 Recipient: rtr-security-threats@realtimeregister.com Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.