janacapital[.]live
“Jana Capital | Official Platform for AI Assisted Trading”
janacapital.live — Помилка сервера (HTTP 502). Тип шахрайства: Fake Exchange. Зведення доказів: VirusTotal 7/91 (Fortinet); Spamhaus DBL_SPAM; PhishDestroy score 83/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged as a high-risk phishing threat targeting users of AI-assisted trading platforms. Analysis indicates the site mimics legitimate financial services under the guise of "Jana Capital," leveraging social engineering to extract credentials or financial data from victims. The threat type is classified as generic_phishing with a focus on fraudulent investment schemes, a common tactic in financial scams. Infrastructure analysis reveals the domain was registered on June 12, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED. It resolves to IP address 188.114.97.3, hosted on Cloudflare infrastructure (AS13335) in the United States. The domain lacks an SSL certificate, increasing the risk of unencrypted data interception. VirusTotal reports 7 out of 95 security vendors have detected malicious activity associated with this domain. It appears on one security blocklist and is currently active, with no signs of takedown or remediation. Mitigation steps for this threat include immediate blacklisting of the domain and IP address in enterprise security controls. Network administrators should monitor for connections to 188.114.97.3 and block outbound traffic to the domain. End-users should be educated on recognizing phishing indicators, such as missing SSL certificates, recent domain creation dates, and unsolicited investment offers. Financial institutions should alert customers to verify the legitimacy of any trading platform before entering credentials or transferring funds. Incident responders should treat any interaction with this domain as a potential compromise and initiate forensic analysis on affected systems.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-15 03:04:47 UTC
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260617-09D52F Recipient: abuse@identitydigital.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога