jup[.]ag-rewards[.]app
jup.ag-rewards.app — Контент недоступен. Олицетворение бренда: Jupiter; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 4/93 (Fortinet, Gridinsoft, Seclookup, SOCRadar); Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 65/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain jup.ag-rewards.app was created on February 21, 2026 and is currently listed as offline. Infrastructure analysis shows that the domain resolved to the IP address 188.114.97.3, which is hosted by Cloudflare, Inc. (AS13335) in the United States. The SSL certificate presented for the site is identified as WE1, indicating the use of a generic certificate rather than a brand‑specific one. The site’s HTTP response returned the page title "Just a moment...", a common placeholder that provides no functional content for analysis.
Reputation scoring from Gridinsoft assigned a trust score of 0 out of 100, reflecting a complete lack of confidence in the domain’s legitimacy. VirusTotal scans recorded four detections out of ninety‑three participating security vendors, confirming that multiple independent scanners have flagged the domain as malicious. The domain appears on two dedicated blocklists, PhishDestroy and ScamSniffer, further corroborating its classification as a threat. Intelligence sources attribute the campaign to a crypto‑scam that impersonates the Jupiter brand, suggesting that victims may be lured with promises related to cryptocurrency rewards or investments.
Given the elevated risk rating, defenders should ensure that the domain is blocked at perimeter firewalls and DNS filtering layers, and that the associated IP address 188.114.97.3 is added to any relevant deny lists. Continuous monitoring of Cloudflare‑hosted infrastructure for similar patterns is advised, as the provider’s shared hosting environment can be leveraged for rapid re‑deployment of malicious sites. Organizations should also review outbound traffic logs for connections to the listed IP and investigate any user reports referencing the "Just a moment..." page title.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание