openterminalallocation-ui.netlify.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of openterminalallocation-ui.netlify.app
This domain appears to host a web page themed around cryptocurrency and decentralized finance, presenting itself as a Jupiter-related rewards or token-allocation interface. The page title and metadata reference "Jupiter: The Home of Onchain Finance," and the screenshot shows an airdrop-style claims page prompting visitors to connect a wallet to check token eligibility and allocation amounts.
Based on the domain structure, this is a subdomain hosted on Netlify rather than an obvious primary brand domain. The content appears to imitate or reference the Jupiter crypto ecosystem, with links to related crypto-oriented domains and support pages. The naming pattern "openterminalallocation-ui" and the wallet-connection flow may indicate a campaign, landing page, or cloned interface intended to capture user interaction in a DeFi context.
Safety Assessment for openterminalallocation-ui.netlify.app
Multiple independent signals indicate elevated risk at the time of this scan. The domain was flagged by 14 out of 91 security engines, and several web-classification sources categorized it as phishing or fraud-related. In addition, one phishing-focused threat database listed the domain, which is a stronger warning sign than a generic heuristic alone. The screenshot also shows a wallet-connection prompt tied to a token allocation or airdrop claim, a pattern commonly associated with credential harvesting or crypto-wallet abuse.
Although the malware scan did not report infected files, it did attach a generic suspicious heuristic to the domain and a number of linked assets. That clean file result does not outweigh the broader phishing-related detections. There is also a minor secondary signal from mail-reputation data: the domain's IP address is listed on one mail-reputation blocklist, though that alone would not prove harmful website activity.
The domain is several years old, but it is hosted on a free-form subdomain platform and appears to present branding associated with Jupiter rather than an official primary domain. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid TLS certificate issued by DigiCert and is served through Netlify infrastructure, with hosting on AWS EC2 in Frankfurt. The certificate validity suggests encrypted transport was available at the time of testing, but encryption alone does not verify the legitimacy of the page content. DNSSEC appears to be unsigned.
From an infrastructure perspective, the domain is a Netlify-hosted subdomain rather than a standalone branded domain. The scan also noted numerous internally hosted assets marked with a generic suspicious heuristic and an IP-level mail-reputation listing. No explicit malicious file payloads were identified in the file scan, but the broader reputation data indicates security concerns beyond simple hosting configuration.
Share your experience with this website. Was it safe? Did you encounter any issues?