Known malicious kithighphishing
teje-rotating-domain kit — main.js
family: teje-rotating-domain
Webpack-bundled SPA deployed across an 8-host rotation that all share the `teje` prefix on cheap/suspicious TLDs (tejehqnfih.work, tejehqzjxt.club, tejeiviusk.asia, tejeiwdeow.cloud, tejeiycpyh.asia, tejeizzifa.wiki, …). Most graded Malicious by the verdict layer, some Low Risk — the roster catches the misses.
Fingerprint anchors
Provenance
Added by: analyst
Added: 2026-05-26 14:39
Anchor #1 of 3. main.74a858e950b3cb360b11.js — entry bundle, 85,463 nodes.
Sightings (9)
| Host | Scan | Script | Match | When |
|---|---|---|---|---|
| tejeiycpyh.asia | 10cab597… | https://tejeiycpyh.asia/main.74a858e950b3cb360b11.js | byte | 2026-05-23 20:49 |
| tejehqzjxt.club | ce8f6e31… | https://tejehqzjxt.club/main.74a858e950b3cb360b11.js | byte | 2026-05-23 15:57 |
| tejehqzjxt.club | 537500ad… | https://tejehqzjxt.club/main.74a858e950b3cb360b11.js | byte | 2026-05-23 08:51 |
| tejeiwdeow.cloud | 1f6d6553… | https://tejeiwdeow.cloud/main.74a858e950b3cb360b11.js | byte | 2026-05-23 02:55 |
| tejeiviusk.asia | 5a3ee199… | https://tejeiviusk.asia/main.74a858e950b3cb360b11.js | byte | 2026-05-23 02:15 |
| tejeizzifa.wiki | 1d034446… | https://tejeizzifa.wiki/main.74a858e950b3cb360b11.js | byte | 2026-05-23 01:57 |
| tejehqnfih.work | 645bfe7a… | https://tejehqnfih.work/main.74a858e950b3cb360b11.js | byte | 2026-05-23 01:42 |
| tejeiwdeow.cloud | 2270b1f9… | https://tejeiwdeow.cloud/main.74a858e950b3cb360b11.js | byte | 2026-05-22 23:41 |
| tejeiwdeow.cloud | 2270b1f9… | https://tejeiwdeow.cloud/main.74a858e950b3cb360b11.js | byte | 2026-05-22 23:41 |