jupofficialchain[.]web[.]app
“Site Not Found”
jupofficialchain.web.app — सामग्री अनुपलब्ध. साक्ष्य सारांश: VirusTotal 12/95 (alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET); Google Safe Browsing flagged; PhishDestroy score 86/100. रजिस्ट्रार: Google Domains.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis indicates that the domain jupofficialchain.web.app is currently inactive, returning an HTTP 404 “Site Not Found” response. The domain is hosted on Fastly’s network (AS54113) in the United States and resolves to 199.36.158.100. SSL termination is provided by Google Trust Services under the WR4 certificate, confirming that the TLS handshake is valid but does not imply legitimacy of the hosted content. Infrastructure fingerprints show the use of Firebase, HSTS, and HTTP/3, which are common in legitimate Google‑hosted applications and are also leveraged by malicious actors to gain trust.
The registrar for the domain is Google LLC, and the domain appears on one public phishing blocklist (PhishDestroy). Google Safe Browsing classifies the site as “social engineering,” a label applied to sites that attempt credential harvesting or deceptive practices. VirusTotal scans have recorded detections from 12 of 95 security vendors, reinforcing the suspicion of malicious intent. No active nameserver records were returned (NS_NOT_FOUND), which may be a result of the domain being taken offline.
Because the site is no longer serving content, direct observation of payloads or credential‑capture mechanisms is not possible, leaving the exact phishing campaign details unknown. Defenders should continue to block the domain at network perimeter devices and update URL filtering rules. Incident response teams should correlate any recent authentication attempts or credential submissions that reference the domain with internal logs, and consider adding the domain to internal deny lists. Monitoring of Fastly’s IP range for similar Firebase‑based deployments is advised, as adversaries frequently reuse the same hosting infrastructure for new campaigns.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 3 identified
Firebase is a Google-backed application development software that enables developers to develop iOS, Android and Web apps.
firebase.google.com 100% विश्वासHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वासवायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।