jup[.]ag-rewards[.]app
jup.ag-rewards.app — Contenuto non disponibile. Simulazione del marchio: Jupiter; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 4/93 (Fortinet, Gridinsoft, Seclookup, SOCRadar); Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 65/100.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain jup.ag-rewards.app was created on February 21, 2026 and is currently listed as offline. Infrastructure analysis shows that the domain resolved to the IP address 188.114.97.3, which is hosted by Cloudflare, Inc. (AS13335) in the United States. The SSL certificate presented for the site is identified as WE1, indicating the use of a generic certificate rather than a brand‑specific one. The site’s HTTP response returned the page title "Just a moment...", a common placeholder that provides no functional content for analysis.
Reputation scoring from Gridinsoft assigned a trust score of 0 out of 100, reflecting a complete lack of confidence in the domain’s legitimacy. VirusTotal scans recorded four detections out of ninety‑three participating security vendors, confirming that multiple independent scanners have flagged the domain as malicious. The domain appears on two dedicated blocklists, PhishDestroy and ScamSniffer, further corroborating its classification as a threat. Intelligence sources attribute the campaign to a crypto‑scam that impersonates the Jupiter brand, suggesting that victims may be lured with promises related to cryptocurrency rewards or investments.
Given the elevated risk rating, defenders should ensure that the domain is blocked at perimeter firewalls and DNS filtering layers, and that the associated IP address 188.114.97.3 is added to any relevant deny lists. Continuous monitoring of Cloudflare‑hosted infrastructure for similar patterns is advised, as the provider’s shared hosting environment can be leveraged for rapid re‑deployment of malicious sites. Organizations should also review outbound traffic logs for connections to the listed IP and investigate any user reports referencing the "Just a moment..." page title.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Informazioni forensi
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo