jupsreward[.]pages[.]dev
“Jupiter | Airdrop”
证据摘要
jupsreward.pages.dev was registered on 21 February 2026 through Cloudflare, Inc. and resolves to the Cloudflare address 188.114.96.3 (AS13335, United States). The site presents a page titled “Jupiter | Airdrop”, explicitly targeting the Jupiter brand with a fake airdrop lure. Analysis of public threat‑intel sources shows that 11 of 95 VirusTotal scanners flagged the domain as malicious, and it appears on two security blocklists.
It is also listed by PhishDestroy and ScamSniffer, and Google Safe Browsing classifies it as a social‑engineering threat. No TLS certificate is observed, indicating the site operates without HTTPS. The domain is currently taken offline, but the infrastructure – a Cloudflare‑protected IP and a newly created domain – suggests the operators could reactivate the site or clone the technique under a different name.
Defenders should block the IP 188.114.96.3, add the domain to local deny lists, and monitor for future registrations that reuse the “jupsreward” or similar “pages.dev” sub‑domains. Continuous observation of Cloudflare‑registered domains targeting the Jupiter brand is recommended, as the kit identified as “Airdrop Scam” is known to be repurposed across campaigns. Until further evidence emerges, the primary confidence lies in the observed impersonation of Jupiter, the confirmed blocklist listings, and the Google Safe Browsing social‑engineering flag.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控