jvtechnologies[.]co[.]in
“JAI VENKATESWARA”
jvtechnologies.co.in — 未验证. 品牌冒充:Base; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 10/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, Emsisoft); PhishDestroy score 98/100. 注册商: Endurance Digital Doma….
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain jvtechnologies.co.in is currently active and has been identified as a fake representation of the brand base. The site returns HTTP 200 and presents the page title “JAI VENKATESWARA”, which does not match the advertised brand and suggests a generic impersonation front. The registration record shows the domain was created on 18 January 2013 through Endurance Digital Domain Technology Private Limited, indicating a long‑standing registration that may be leveraged for credibility.
Network analysis shows the domain resolves to the IPv4 address 162.241.148.33, which belongs to ASN 46606 (Unified Layer) and is geolocated in the United States. The authoritative name servers are ns1.bh-ht-17.webhostbox.net and ns2.bh-ht-17.webhostbox.net, both hosted on the same provider. The TLS certificate is issued by Google Trust Services under the WE1 certificate profile, confirming that the site uses a valid HTTPS certificate despite its malicious purpose.
Threat intelligence sources have flagged the domain on one public blocklist and it is listed as blocked by PhishDestroy. The Gridinsoft trust score is 0 out of 100, and AlienVault OTX contains four pulses referencing this domain, reinforcing its reputation as malicious. VirusTotal scans returned nine positive detections out of ninety‑five scanners, indicating that multiple security engines have identified malicious characteristics.
Defenders should add jvtechnologies.co.in to inbound and outbound filtering rules, ensure that DNS resolvers block the domain, and monitor for any traffic to 162.241.148.33. Because the site presents a valid SSL certificate, inspection of TLS traffic may be required to detect payloads hidden within encrypted sessions. Continuous monitoring of the associated name servers and periodic re‑scanning with updated scanners are recommended to capture any changes in the threat profile.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。