jup[.]ag-rewards[.]app
jup.ag-rewards.app — 内容不可用. 品牌冒充:Jupiter; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 4/93 (Fortinet, Gridinsoft, Seclookup, SOCRadar); Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 65/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain jup.ag-rewards.app was created on February 21, 2026 and is currently listed as offline. Infrastructure analysis shows that the domain resolved to the IP address 188.114.97.3, which is hosted by Cloudflare, Inc. (AS13335) in the United States. The SSL certificate presented for the site is identified as WE1, indicating the use of a generic certificate rather than a brand‑specific one. The site’s HTTP response returned the page title "Just a moment...", a common placeholder that provides no functional content for analysis.
Reputation scoring from Gridinsoft assigned a trust score of 0 out of 100, reflecting a complete lack of confidence in the domain’s legitimacy. VirusTotal scans recorded four detections out of ninety‑three participating security vendors, confirming that multiple independent scanners have flagged the domain as malicious. The domain appears on two dedicated blocklists, PhishDestroy and ScamSniffer, further corroborating its classification as a threat. Intelligence sources attribute the campaign to a crypto‑scam that impersonates the Jupiter brand, suggesting that victims may be lured with promises related to cryptocurrency rewards or investments.
Given the elevated risk rating, defenders should ensure that the domain is blocked at perimeter firewalls and DNS filtering layers, and that the associated IP address 188.114.97.3 is added to any relevant deny lists. Continuous monitoring of Cloudflare‑hosted infrastructure for similar patterns is advised, as the provider’s shared hosting environment can be leveraged for rapid re‑deployment of malicious sites. Organizations should also review outbound traffic logs for connections to the listed IP and investigate any user reports referencing the "Just a moment..." page title.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。