jetbrains-apps-group[.]gitlab[.]io
“Un instant…”
jetbrains-apps-group.gitlab.io — Não verificado. Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 3/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 71/100. Registrador: GitLab Pages.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, jetbrains-apps-group.gitlab.io, is confirmed to host a credential harvesting phishing site targeting software developers. The infrastructure mimics legitimate JetBrains services, a provider of integrated development environments, to deceive users into submitting login credentials. Analysis indicates the site employs social engineering tactics, presenting a cloned authentication interface to capture sensitive account information, which may lead to unauthorized access to development environments, source code repositories, or corporate networks. Infrastructure analysis reveals the domain is currently active and resolves to the IP address 35.185.44.232. It utilizes a GlobalSign nv-sa SSL certificate, which may lend an appearance of legitimacy to unsuspecting users. As of the latest scan, only 1 out of 95 security vendors on VirusTotal flagged this domain as malicious, suggesting the threat is either newly deployed or employs evasion techniques to avoid widespread detection. The domain is hosted on a platform that allows rapid deployment of static sites, enabling threat actors to quickly establish and dismantle phishing infrastructure with minimal traceability. Users who have visited jetbrains-apps-group.gitlab.io or entered credentials on the site should immediately revoke any submitted passwords and enable multi-factor authentication on associated accounts. System administrators are advised to block the domain and its resolving IP address (35.185.44.232) at the network perimeter. Affected users should monitor accounts for unauthorized activity and consider rotating credentials for any services where the same password was reused. Organizations should conduct internal reviews to assess potential exposure, particularly if the compromised credentials had elevated permissions or access to sensitive repositories.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 12 identified
Salesforce is a cloud computing service software (SaaS) that specializes in customer relationship management (CRM).
www.salesforce.com 100% de confiançaRuby on Rails is a server-side web application framework written in Ruby under the MIT License.
rubyonrails.org 50% confidenceVue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 100% de confiançaStripe offers online payment processing for internet businesses as well as fraud prevention, invoicing and subscription management.
stripe.com 100% de confiançaZendesk is a cloud-based help desk management solution offering customizable tools to build customer service portal, knowledge base and online communities.
zendesk.com 100% de confiançaOneTrust is a cloud-based data privacy management compliance platform.
www.onetrust.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaGoogle Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of jetbrains-apps-group.gitlab.io · checked Jun 26, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo