jweb-baseiinetmx[.]vip
“jweb-baseiinetmx.vip”
Resumen de las pruebas
The domain jweb-baseiinetmx.vip was registered on February 21, 2026 and is currently offline. Its authoritative name resolution points to IP address 199.59.243.228, which is owned by Amazon.com, Inc. (AS16509) and geolocated to the United States. The host presents an SSL certificate identified as R13, indicating the use of a standard TLS certificate rather than a self‑signed or expired chain. The page title returned from the live host prior to takedown is identical to the domain name, "jweb-baseiinetmx.vip," providing no additional context about the intended victim brand or lure.
VirusTotal reports that 14 of 93 scanning engines flagged the domain, consistent with a detection confidence that is higher than background noise but not universal. The domain appears on a single known blocklist, PhishDestroy, confirming that at least one anti‑phishing service has taken active mitigation steps. No Safe Browsing, OTX, registrar reputation, or additional threat‑intel feeds are currently referenced for this indicator.
The limited observable data suggest a classic brand‑impersonation phishing campaign, but the specific brand being spoofed cannot be verified from the available artefacts. Defenders should ensure that the IP 199.59.243.228 is blocked at perimeter and DNS filters, add jweb-baseiinetmx.vip to internal blocklists, and monitor for newly registered domains that share the "jweb-baseiinetmx" label pattern or that resolve to the same ASN. Continuous re‑scanning of the domain on multi‑engine platforms is advised to capture any changes in detection ratios should the site be re‑hosted.
Data Coverage
Inteligencia de seguridad de red
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | jweb-baseiinetmx.vip |
malicious | Sinkholed |
| Quad9 DNS | jweb-baseiinetmx.vip |
malicious | Sinkholed |
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.