Is jtx-network.com safe or a scam?

jtx-network.com shows a raw web-server directory listing with two PHP files in the root and was registered only five days before the scan.

Medium Risk
Phishing / Credential Theft
Captured page preview of jtx-network.com

At a glance

Antivirus · registration · identity
Antivirus detections
3 flagged
2 malicious · 1 suspicious
Forcepoint ThreatSeeker
Domain registration
Jul 15, 2026Registered
5 days oldAt scan time
Operator identity
Claimed Only
Contact details are present but not independently verified
Verified factsSaved with this scan
  1. 2 engines classified the URL as malicious and 1 as suspicious; 56 returned harmless, 33 returned undetected, and 0 returned no usable result.
  2. The domain was registered Jul 15, 2026 and was 5 days old at scan time.
  3. Operator identity: Claimed Only. Contact details are present but not independently verified
  4. Google Safe Browsing returned no listed threat categories for this address at scan time.
  5. The site presented a valid TLSv1.3 certificate at scan time.

Intelligence

A brand-new domain serving only an index of its web root, complete with two PHP files and no business contact details, matches the pattern of an exposed or possibly backdoored server rather than a legitimate site.

Evidence Map

Reputation
Concern

One or more reputation sources recorded a concern

Identity
Limited

Contact details are present but not independently verified

Behavior
Limited

Only partial behavior evidence was available

History
Observed

The domain was registered Jul 15, 2026 and was 5 days old at scan time.

Risk Factors
  • 1Domain only 5 days old at scan time
  • 2Two PHP scripts exposed in web root
  • 3No contact email or postal address present
Positive Signals
  • 1Valid TLSv1.3 certificate presented
  • 2Hosting IP shows zero abuse reports

Observed visitor journey

Visiting http://jtx-network.com/ returns a plain directory index titled "Index of /" that lists cgi-bin, two PHP scripts (4e6mD5vE.php and 4Ksuu91p.php), php.ini, and no other content.

Domain timeline and ownership

The domain was registered on 15 July 2026 and was only five days old at scan time; registration privacy was not observed and no independent operator verification was possible.

Technical signals

The site uses a valid TLSv1.3 certificate and the hosting IP carries an abuse-confidence score of 0/100, yet two antivirus engines flagged the URL as malicious and one as suspicious.

Page content and contact details

No domain email, postal address, or social links appear on the page; the only listed contact field is a phone number whose format matches the registration date.

Visible risk indicators

  • Raw directory listing of an unconfigured server
  • Two 16 kB PHP files placed directly in the web root
  • Extremely recent registration with no visible business footprint

Website Preview

Captured page preview of jtx-network.com
Visual findings

Screenshot capture was incomplete; HTML content corroborates a functional site.

  1. 1Page displays a raw directory listing typical of an unconfigured web server
  2. 2Presence of suspicious PHP files in the root directory
  3. 3Screenshot incomplete (slow render) — page HTML loaded normally, ignoring parked-domain heuristic.

Web Research

No independently sourced claims were found for this report.

Threat Detection

Antivirus results, browser warnings, isolated page observations, and the threat pattern identified in this report.

Antivirus distribution
Recorded engine classifications, not a blanket clean bill
92 engines
Malicious2
Suspicious1
Harmless56
Undetected33
No result0
Antivirus consensus

Antivirus engine results

Result date Jul 19, 2026
Detection matrix
3 engines flagged this URL

This scan saved classifications from an antivirus network of 92 engines. Each malicious or suspicious classification is listed below by engine name and should be weighed with the rest of the report.

2Malicious1Suspicious56Harmless33Undetected0No result92Engines
0
of 92
Forcepoint ThreatSeeker
Malicious· phishing
SOCRadar
Malicious· phishing
URLQuery
Suspicious· suspicious

3 antivirus engines flagged this URL. A single classification is not consensus by itself. Review its label together with the page, identity, behavior, and history evidence shown in this report.

Threat pattern
Phishing / Credential Theft
Threat tags
unconfigured server exposure
Top reasons

Evidence behind this threat profile

3 reasons
  1. 1Domain only 5 days old at scan time
  2. 2Two PHP scripts exposed in web root
  3. 3No contact email or postal address present
Scam-Type Likelihood

2 of 22 categories showed signals

This profile separates the site's primary threat from other patterns supported by the saved page evidence, public research, and security findings.

Top match: observed
observed
High likelihood
90/100
  • Title shows 'Index of /' with raw directory listing
  • PHP files present in root directory with recent timestamps
  • No configured landing page or business content
possible
Moderate likelihood
40/100
  • Forcepoint ThreatSeeker and SOCRadar flagged as phishing
  • Domain age of 5 days is consistent with throwaway phishing infrastructure

Technical Details

Identity, domain, infrastructure, and connection facts saved with this scan.

July 21, 2026 at 12:08 PM UTC

Identity

6 facts
Operator
Claimed Only
On-domain email
Not observed
Other email
Not observed
Phone
2 numbers
Postal address
Not observed
Social profiles
Not observed

Domain

8 facts
Domain age
5 days old
Registered
Jul 15, 2026
Registrar
NICENIC INTERNATIONAL GROUP CO., LIMITED
Expires
Jul 15, 2027
WHOIS updated
Jul 15, 2026
Registrant
Unavailable
Registration country
Unavailable
WHOIS privacy
Not observed

Infrastructure

14 facts
HTTPS
Valid certificate
TLS protocol
TLSv1.3
Certificate issuer
Let's Encrypt · YR1
Certificate subject
*.com.ethdenvers.com
Certificate valid from
Jul 15, 2026
Certificate valid to
Oct 13, 2026
Network address
162.244.92.2
ASN
Unavailable
Hosting organization
Webhosting Holdings LLC
Country
US
Server
LiteSpeed
Site platform
Unavailable
IP reputation
0% confidence · 0 reports
Tor exit node
No

Connections

13 facts
Scan scope
Domain
Destination host
jtx-network.com
Redirects
0
Cross-domain redirect
No
Redirect status codes
200
Lookalike characters
Not observed
Internationalized domain
No
Page response
200
Observation coverage
Unavailable
Extracted links
Unavailable
Unique IPs contacted
Unavailable
Countries contacted
Unavailable
Referenced domains
0

What to do

1
Before interacting
Do not interact with files or scripts on this domain

Do not interact with files or scripts on this domain.

2
If you already interacted

If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.

Final Verdict

Do not interact with files or scripts on this domain

Why this verdict

The domain is five days old, presents an unconfigured directory listing containing two 16 kB PHP scripts, and has no verified business presence or contact email.

Recommendation

Do not interact with files or scripts on this domain.

Key evidence

  1. 1Domain only 5 days old at scan time
  2. 2Two PHP scripts exposed in web root
  3. 3No contact email or postal address present
Evidence: moderateScope: DomainFresh scan: July 21, 2026 at 12:08 PM UTC

Safety FAQ

Is jtx-network.com safe to use?+

The domain is five days old, presents an unconfigured directory listing containing two 16 kB PHP scripts, and has no verified business presence or contact email.

What should I do about jtx-network.com?+

Do not interact with files or scripts on this domain.

How old is jtx-network.com?+

jtx-network.com is 5 days old and was registered jul 15, 2026.

What if I already interacted with jtx-network.com?+

If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.

When was this report updated?+

This report reflects the scan completed July 21, 2026 at 12:08 PM UTC.