jumperexchange[.]eu[.]com
“jumperexchange.eu.com | 522: Connection timed out”
Зведення доказів
Analysis of jumperexchange.eu.com shows a newly registered domain (creation date Feb 21 2026) that is actively serving a fake‑exchange phishing campaign. The domain resolves to IP 188.114.96.3, which belongs to AS13335 operated by Cloudflare, Inc. HTTP responses return status 521 and a page title of “jumperexchange.eu.com | 522: Connection timed out,” indicating the front‑end is deliberately inaccessible, a pattern often used to evade automated crawling. The site presents a Google Trust Services / WE1 SSL certificate, yet the Gridinsoft trust score is 0 / 100, reflecting extreme malicious confidence.
Infrastructure profiling reveals the domain is hosted behind Cloudflare with HTTP/3 enabled, and the authoritative nameservers are ns1‑ns4.centralnic.net. Registration details list Instra Corporation Pty Ltd. as the registrar, and the domain appears on a single security blocklist, currently flagged by PhishDestroy. VirusTotal scans show 2 of 95 security vendors flagging the domain, reinforcing its low‑reputation status despite limited vendor coverage. The overall risk rating is high and the operational status remains active.
Defenders should prioritize immediate blocking of jumperexchange.eu.com at perimeter and endpoint layers, and enforce URL filtering to prevent user navigation. Continuous monitoring of the associated IP 188.114.96.3 and its Cloudflare edge nodes is advised, as threat actors may pivot to additional sub‑domains or rotate IPs within the same ASN. Incident response teams should also update internal phishing detection signatures with the observed HTTP 521/522 behavior and the specific page title string to improve detection of similar fast‑flux deployments.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 13.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Технології
Виявлено 2 технології з високою впевненістю
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога