Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@dynadot.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
jupiter-extension[.]com
jupiter-extension.com 网络钓鱼与安全检查
“Jupiter Wallet”
jupiter-extension.com — 最后已知的活跃状态 (HTTP 301). 品牌冒充:Jupiter; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 7/91 (ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker); PhishDestroy score 81/100. 注册商: Dynadot.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies jupiter-extension.com as a live domain set up to mimic the official Jupiter Wallet, a popular cryptocurrency application. In plain terms, this site is a crypto drainer: it shows a fake Jupiter login page to trick visitors into entering their seed phrase or private key, allowing attackers to steal funds directly from connected wallets. Because it pretends to be the Jupiter Wallet extension, unsuspecting users may believe they are authenticating with the real service, only to unknowingly hand over control of their crypto assets to criminals. The page itself is styled to look legitimate, with the title Jupiter Wallet, but every action taken here leads to wallet drainers rather than the official Jupiter ecosystem. This domain was flagged by PhishDestroy on the same day it appeared in public radar. Key technical indicators include zero detections out of 95 VirusTotal scans, a domain creation date of April 07, 2026, and hosting on IP address 188.114.96.3 via the registrar Dynadot Inc. The site uses a Let’s Encrypt SSL certificate to create an appearance of legitimacy, but the certificate alone does not guarantee safety. Exact matching metrics such as the 2/95 VirusTotal score and creation date serve as concrete signals that this site is newly launched and largely unnoticed by major scanning engines, making it a higher-risk threat at this early stage. If you visited jupiter-extension.com or entered any wallet information, disconnect your wallet from the internet immediately and transfer remaining funds to a fresh wallet if possible. Do not reuse seed phrases or private keys anywhere else. Scan your device with updated antivirus software and consider revoking any permissions granted to suspicious browser extensions. Report the domain to PhishDestroy and your wallet provider so others can be warned. Always verify official extension sources through Jupiter’s verified channels before installing wallet software.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of jupiter-extension.com · checked Apr 15, 2026
证据与外部报告
PD-20260415-F472BD Recipient: abuse@dynadot.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。