jupi-dapp[.]web[.]app
“Site Not Found”
证据摘要
Analysis of the domain jupi-dapp.web.app indicates it was actively involved in an investment scam operation, now flagged and taken offline as of July 24, 2026. The domain was hosted on Google's Firebase platform, resolving to the IP address 199.36.158.100, which is part of AS54113 (Fastly, Inc.) located in the United States. The SSL certificate was issued by Google Trust Services (WR4), a common provider for Firebase-hosted applications, which does not inherently indicate malicious activity but confirms the infrastructure used. The domain was registered through Google LLC, aligning with its Firebase hosting origin. At the time of this report, the domain returns an HTTP 404 status with the page title 'Site Not Found,' suggesting it has been disabled or removed.
This status is corroborated by its appearance on one security blocklist, specifically PhishDestroy, and a detection rate of 3 out of 95 security vendors on VirusTotal, indicating moderate but not universal recognition as malicious. Infrastructure analysis reveals the use of HSTS and HTTP/3 protocols, typical of modern web applications but not exclusive to legitimate services. The scam type was classified as an investment scam based on available threat intelligence, though the exact content or targeted brand remains unconfirmed due to the domain's current offline status. No nameservers were explicitly associated with the domain, which is consistent with Firebase's managed hosting environment.
Defenders should treat this domain as confirmed malicious for the purpose of blocking and monitoring. While the domain is currently offline, historical resolution to 199.36.158.100 and its association with AS54113 may warrant further scrutiny of related infrastructure. Given the limited detection on VirusTotal and single blocklist entry, additional retrospective analysis of network logs for connections to this IP or domain is recommended to identify potential prior compromise.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
检测时间线
技术
识别出 3 项高置信度技术
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控