thrift.ww17.jorgazsb.scotiabank-secure.info
“Redirecting...”
thrift.ww17.jorgazsb.scotiabank-secure.info — अंतिम ज्ञात सक्रिय (HTTP 200). ब्रांड प्रतिरूपण: Unknown; घोटाले का प्रकार: Impersonation. साक्ष्य सारांश: VirusTotal 20/89 (ADMINUSLabs, Criminal IP, BitDefender, Chong Lua Dao, CRDF); URLQuery 2 det.; URLScan capture; Google Safe Browsing flagged; PhishDestroy score 100/100. रजिस्ट्रार: Dynadot.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
साक्ष्य सारांश
thrift.ww17.jorgazsb.scotiabank-secure.info is a subdomain of scotiabank-secure.info. PhishDestroy first observed the hostname on Sep 22, 2026. Stored content metadata identifies Unknown as the apparent target. The captured page title is “Redirecting...”. Stored page analysis classifies the content as impersonation. Current evidence score: 100/100 (critical).
Positive findings are stored from 3 sources: VirusTotal, Google Safe Browsing, and URLQuery. On Sep 22, 2026 at 18:51 UTC, VirusTotal recorded 20 detections among 89 engines: ADMINUSLabs, Criminal IP, BitDefender, Chong Lua Dao, CRDF, CyRadar, ESET, Emsisoft, Forcepoint ThreatSeeker, Fortinet, G-Data, Google Safe Browsing, Gridinsoft, Kaspersky, LevelBlue, Lionic, SOCRadar, Sophos, VIPRE, Webroot; Google Safe Browsing flagged the domain: Unwanted Software. URLQuery recorded 2 detections; no observation timestamp was retained. Non-positive and contextual checks: The separate external-blocklist snapshot contained no matches on Sep 22, 2026 at 18:20 UTC. URLScan captured the page on Sep 22, 2026 at 09:55 UTC.
HTTP 200 was recorded on Sep 22, 2026 at 11:05 UTC. Registration records for the registrable domain scotiabank-secure.info list Dynadot Inc as the registrar. At collection time, the hostname resolved to 172.236.108.16 on AS63949 (Akamai Connected Cloud). The IP and ASN identify shared Akamai edge infrastructure; the origin server is not established by this address. The stored server header is openresty. DOM analysis on Sep 22, 2026 at 10:20 UTC returned 98/100. The evidence archive retains 3 visual captures from PhishDestroy and URLScan. TLS metadata lists Let's Encrypt / YE2 as the certificate issuer with validity through Oct 6, 2026; checked Sep 22, 2026 at 10:02 UTC.
The content indicators and 3 positive source findings support the current Unknown-themed impersonation classification.
Forensic History & Detection Timeline
-
VirusTotal Detections Update Sep 22, 2026 · 14:45 UTCVirusTotal scanner detections updated from 20 to 20. Added scanner alerts: LevelBlue. Resolved alerts: Seclookup.
-
Status Check Sep 22, 2026 · 11:37 UTCTelemetry event observed.
-
Threat First Observed Sep 22, 2026 · 11:36 UTCDomain ingestion complete. Initial state is marked as unknown pointing to IP
172.236.108.16.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
खोज-परहेज़ विश्लेषण
क्लोकिंग और ट्रैफ़िक-वितरण जाँच
अभी तक स्कैन नहीं किया गया
अभी तक क्रॉलर और ब्राउज़र के बीच कोई अंतर दर्ज नहीं किया गया है।
इस होस्ट के लिए संग्रहीत क्रॉलर-बनाम-ब्राउज़र अवलोकन, साथ ही केइतारो-शैली ट्रैफ़िक वितरण प्रणालियों के लिए लाइव फिंगरप्रिंट जांच।
- संग्रहीत छुपाने वाला झंडा
- अभी तक स्कैन नहीं किया गया
- अंतिम छुपाने का स्कैन
- स्कैनर द्वारा देखा गया सर्वर हेडर
openresty
स्कैनर नोट: alive_content: raw=ok; http=200; via=https_proxy; server=openresty
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of thrift.ww17.jorgazsb.scotiabank-secure.info · checked Sep 22, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।