jupiter-ags[.]pages[.]dev
“Jupiter | Airdrop”
This domain, jupiter-ags.pages.dev, was observed hosting a fake airdrop page that claims to represent the Jupiter brand. The site was registered on February 21, 2026 through Cloudflare, Inc., and resolves to the Cloudflare IP address 172.66.47.156 located in the United States under ASN 13335. No TLS certificate was presented, indicating the site was served over plain HTTP. The page title returned by the web server reads “Jupiter | Airdrop”, matching the declared scam type of a fake airdrop.
Google Safe Browsing flags the domain for social engineering, and two independent blocklists (PhishDestroy and ScamSniffer) have listed it. VirusTotal scans show nine of ninety‑three security vendors flag the domain as malicious, reinforcing the classification. The domain currently reports an offline status, suggesting that the hosting has been taken down or is otherwise inaccessible at the time of analysis. Despite the offline state, the infrastructure footprints remain useful for detection: the registrar (Cloudflare), the hosting IP, and the lack of SSL are all repeatable indicators.
Defenders should add the domain and its resolving IP to network deny lists, monitor for any re‑hosting on the same IP range, and consider updating brand‑specific protective rules for Jupiter‑related traffic. Continuous observation of Cloudflare‑hosted assets for new sub‑domains mimicking Jupiter or similar airdrop language is recommended, as the underlying registration pathway is commonly reused by malicious actors. Because the domain was flagged by Google Safe Browsing and multiple blocklists, it should be treated as high‑confidence malicious and blocked at perimeter and endpoint layers.
威胁响应 Pipeline
阻止列表覆盖
10 个来源 · 于 2026年8月9日 同步
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控