ebundletools[.]in
साक्ष्य सारांश
Analysis of ebundletools.in confirms its use as an active credential-theft phishing domain. Registered on May 12, 2026, through Endurance International Group India Private Limited, the domain currently resolves to 188.114.97.3, an IP address geolocated to Canada and associated with CloudFlare’s network infrastructure. The domain’s nameservers—alfred.ns.cloudflare.com and imani.ns.cloudflare.com—further indicate reliance on CloudFlare’s DNS and proxy services, a common tactic to obscure the true origin of phishing infrastructure. The domain is flagged by one security vendor on VirusTotal and appears on a single security blocklist, specifically PhishDestroy. While the HTTP response currently returns a 403 status, this does not indicate inactivity; rather, it suggests the site may be selectively serving content or awaiting activation. The SSL certificate, issued by Google Trust Services (WE1), is consistent with legitimate domains but does not mitigate the domain’s malicious classification. AlienVault OTX records the domain in one threat intelligence pulse, reinforcing its association with known phishing activity. Infrastructure analysis reveals no evidence of brand impersonation or a specific phishing kit, though the domain name itself—ebundletools.in—suggests a potential focus on software or digital product scams. The lack of widespread detection across security vendors does not diminish the risk; phishing domains often evade broad detection during early deployment phases. Defenders should treat this domain as high-risk and prioritize blocking it at the DNS and network levels. Monitoring for changes in HTTP status or SSL certificate updates may provide additional indicators of evolving malicious activity.
Data Coverage
सुरक्षा संकेत
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।