Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
jupunlock[.]cc
Kanıt özeti
jupunlock.cc was registered on March 15, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and is currently active. The domain resolves to 104.21.91.96, an address owned by AS13335 Cloudflare, Inc. in the United States. Both eve.ns.cloudflare.com and louis.ns.cloudflare.com serve as authoritative name servers, indicating the use of Cloudflare’s DNS and CDN services.
The web server advertises Node.js and the Express framework, with HTTP responses protected by HSTS and delivered over HTTP/3. Cloudflare Browser Insights are also present, confirming that traffic is being proxied through Cloudflare. An HTTP request to the root URL returns status 403 and a page titled “Just a moment…”, a pattern commonly associated with Cloudflare challenge pages.
Threat intelligence flags jupunlock.cc as a generic phishing site. VirusTotal records four out of ninety‑five security vendors marking the domain as malicious, and Gridinsoft assigns a trust score of zero out of one hundred. The domain appears on one public blocklist and is explicitly blocked by PhishDestroy. The low trust score, multiple vendor detections, and the presence of a challenge page together support the classification, although the specific brand or service being spoofed has not been disclosed.
Defenders should add 104.21.91.96 and the domain jupunlock.cc to deny‑list rules at perimeter and endpoint layers. Continuous DNS monitoring is recommended to detect any future changes to the domain’s name‑server configuration or IP address. Security teams should also consider feeding the observed indicators—such as the “Just a moment…” page title and the Cloudflare challenge response—into threat‑intel platforms to improve automated detection of similar Cloudflare‑proxied phishing infrastructure.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260318-EBDBD9- Yakalanan sayfa başlığı
- Just a moment...
- PDF belgesi
- PDF kanıtı
Hukuki dayanak
Kanıtın tam metni
Acceptable Use Policy (AUP): The domain jupunlock.cc is engaged in phishing activities, which directly contravenes the AUP's prohibition against illegal activities and fraud.
Terms of Service (TOS): The hosting provider reserves the right to suspend or terminate services for violations, and the ongoing use of this domain for deceptive practices warrants immediate action.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which is relevant as phishing schemes often involve unauthorized data collection.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, applicable to the fraudulent nature of phishing.
CAN-SPAM Act: This U.S. law regulates commercial email and prohibits misleading headers and deceptive subject lines, both of which are often employed in phishing attempts.
Regulatory Note: Failure to take prompt action against this domain may expose your organization to legal liability and regulatory scrutiny. Non-compliance with applicable laws and your own policies could result in significant penalties.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 10.08.2026
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of jupunlock.cc · checked Mar 18, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin