jupiterswap-en-help[.]typedream[.]app
“Jupiterswap: Advanced DEX Aggregator on Solana”
jupiterswap-en-help.typedream.app — İçerik kullanılamıyor. Marka kimliğine bürünme: Jupiter; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 1/91 (LevelBlue); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Kayıt kuruluşu: Typedream.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
The domain jupiterswap-en-help.typedream.app is flagged as a brand‑impersonation site targeting the Jupiter brand. The page title returned by the server is “Jupiterswap: Advanced DEX Aggregator on Solana,” which aligns with the declared impersonation of Jupiter’s decentralized‑exchange services. DNS resolution points to the IP address 188.114.97.3, which belongs to Cloudflare, Inc. (AS13335) and is geolocated in the United States. The domain is registered through the Typedream platform, and the SSL certificate presented is issued by Google Trust Services under the WE1 certificate authority, indicating a legitimate TLS chain but not mitigating the malicious intent.
HTTP response code 404 was observed, suggesting the resource is no longer serving content; the domain is currently listed as offline. Nevertheless, the indicator persists on three independent security blocklists and has been actively blocked by PhishDestroy, MetaMask, and SEAL, confirming its presence in multiple threat‑intel feeds. VirusTotal analysis shows that 1 of 91 security scanners flagged the domain, reinforcing the suspicion of malicious activity. Nameserver data could not be retrieved (NS_NOT_FOUND), which limits deeper infrastructure correlation.
For defenders, the immediate recommendation is to ensure the domain is blocked at DNS and proxy layers, update web‑filter policies to include the three known blocklists, and monitor for any re‑registration or new IP assignments that could resurrect the site. Continuous observation of Typedream‑hosted domains for similar brand‑impersonation patterns is advised, as the platform may be leveraged for future campaigns. The lack of a live page limits further forensic detail, but the combination of brand‑specific page title, Cloudflare hosting, SSL issuance, and multiple blocklist entries provides sufficient confidence to treat the domain as a confirmed threat.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
VirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin