jupi-official[.]web[.]app
“Instant | Jupiter”
jupi-official.web.app — İçerik kullanılamıyor. Marka kimliğine bürünme: Jupiter; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 1/95 (Trustwave); PhishDestroy score 55/100. Kayıt kuruluşu: Google Domains.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Analysis of jupi-official.web.app shows a domain that impersonates the Jupiter brand and is linked to a crypto‑scam campaign. The site resolved to IP 199.36.158.100, an address owned by Fastly, Inc. in the United States (AS54113). The hosting stack was identified as Firebase with HTTP/3 and HSTS enabled, and the TLS certificate was issued by Google Trust Services under the WR4 profile, consistent with a Google‑managed hosting environment. The domain was registered through Google LLC, which is typical for Firebase‑based deployments.
When accessed, the server returned an HTTP 404 status and the page title reported “Instant | Jupiter,” confirming the brand reference. VirusTotal recorded a single positive detection out of 95 scanned security vendors, indicating that at least one AV engine flagged the domain as malicious. The domain appears on one public blocklist and is specifically blocked by PhishDestroy, further corroborating its malicious reputation.
Current operational status is offline, suggesting the site has been taken down or is temporarily inaccessible, but the infrastructure artifacts remain observable. Defenders should continue to block the domain at perimeter and endpoint filters, monitor Fastly‑hosted Firebase assets for similar brand‑impersonation patterns, and enforce URL reputation checks against known blocklists. Because the underlying hosting provider is shared, future impersonation attempts may reuse similar infrastructure, so threat‑intel feeds should be updated with the observed certificate details, IP address, and page title for rapid correlation.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
Google platform for building mobile and web applications with backend services.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin