MALICIOUS — CRITICAL
فحص التصيد والأمان للنطاق jupairdrops.pages.dev
jupairdrops[.]
This domain, jupairdrops.pages.dev, is identified as an active brand impersonation threat targeting Jupiter, a decentralized finance platform.
- VirusTotal
- 6/91
- Blocklists
- No stored match
- التوفر
- آخر نشاط معروف · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
jupairdrops.pages.dev — آخر نشاط معروف (HTTP 200). انتحال العلامة التجارية: Jupiter; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 6/91 (ADMINUSLabs, alphaMountain.ai, Emsisoft, Fortinet, Netcraft); PhishDestroy score 83/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain, jupairdrops.pages.dev, is identified as an active brand impersonation threat targeting Jupiter, a decentralized finance platform. The site presents itself as an official airdrop campaign titled "Jupuary 2025 | Jupiter," designed to deceive users into disclosing sensitive credentials or transferring assets under false pretenses. Analysis confirms this as a high-risk phishing operation, currently unresolved and accessible to potential victims. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on January 26, 2025, and resolves to the IP address 172.66.45.32, hosted within Cloudflare’s network (AS13335). The SSL certificate is issued by Google Trust Services (WE1), a common characteristic of both legitimate and malicious sites leveraging Cloudflare’s services. Security vendor assessments indicate that 6 of 95 engines on VirusTotal flag the domain as malicious. Additionally, the domain appears on one security blocklist and is actively blocked by at least one threat intelligence feed. The page title, "Jupuary 2025 | Jupiter," directly mimics Jupiter’s branding, reinforcing the impersonation attempt. Current status confirms the domain remains active, posing an ongoing risk to users unaware of the fraudulent nature of the site. Organizations and individuals are advised to implement immediate blocking of jupairdrops.pages.dev at the DNS or network level. End-users should be educated to recognize phishing indicators, such as unsolicited airdrop claims, and verify official communications through Jupiter’s authenticated channels. Security teams are recommended to monitor for related infrastructure, including subdomains or IPs associated with 172.66.45.32, and assess logs for connections to this domain to identify potential compromise.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of jupairdrops.pages.dev · checked Mar 28, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.