Scammers Exploit Kumbh Mela with Fake Booking Websites


Posted on: 03 Jan 2025 | Author: Foresiet
header

Introduction

One such sacred gathering in India is the Kumbh Mela festival. Thousands of tourists throng here from all around the world, but the event often becomes a playing ground for scamsters as well, and these scamsters set up a website to create a false reservation system to attract the unsuspecting traveller. Here's how this works for fake Birla Dharamshala websites.

Fraudulent Websites and Their Operations

A web of suspicious sites was identified; these sites had exactly the same identical names while providing accommodation in Birla Dharamshala. Among such sites included;

  • birladharmshala.in
  • birladharmshalas.in
  • birladharmshala.com
  • birladharamshala.in
  • birladharamshaala.in
  • birladharmshaala.com
  • birladharamshala.pro
  • thebirladharmshala.in
  • mybirladharamshala.com
  • birladharamshalaroom.in

Our Investigation and Conversation with the Scammer

As a part of our research, we directly communicated with the scammer to gather relevant information. Screenshots of our conversation reveal their modus operandi, which includes shared payment details, fake claims, and assurance of booking confirmation.

  • Domain Name: birladharmshala.in
  • Current Status and Date: Active 28-12-2024

Displays a fake website falsely claiming to offer hotel room bookings.

These domains appear to be run by one entity or group of people to scam users through the mimicry of legitimate accommodation services. They use WhatsApp APIs and direct payment methods to reach out to the victims and make fraudulent money collection.

Shows the WhatsApp API link.

Domains are locked with denial statuses to prohibit their unauthorized deletion, update, or transfer. Different providers of registering domains: GoDaddy, HOSTINGER, Domainshype. Management in similar manners would easily help oversee domains.

Shows the domain information.

The Scam Unfolded

These scammers present themselves as showing legitimacy in dealing through many means of contacting them and getting their payments done through different kinds of payments. Such important points have been enlisted:

  • Location Claimed: 24/2, 10, Ayodhya Rd, Sai Nagar, New Colony, Ayodhya, Uttar Pradesh 224123.
  • Contact Information:
    • WhatsApp API: +91 8690810199
    • Email: birladharmshala2@gmail.com
  • Payment Details:
    • Google Pay linked to a personal UPI ID: 9162347210@ptyes
    • Bank account under the name "BOM Birla DHOTE BUILDING" at the Bank of Maharashtra, with IFSC MAHB0000720.

Before making payment, the scammer would issue greatly discounted offers to the victims for rooms. Once the payment is made, no communication is further received and the victim does not get a booking and the amount is also lost.

Displays WhatsApp details provided by the scammer

Shows a conversation about booking details.

These conversations helps in uncovering key information regarding the person or group behind the scam, including hosting platforms and payment channels. The evidence gathered provides insights into how such frauds work, and this is an opportunity to increase awareness and help the authorities track down the offenders.

Displays the bank details shared by the scammer.

Displays all WhatsApp numbers linked to the domains mentioned.

The caller had explained to the victim the payment processing procedure, such as UPI IDs and bank account details. This scam site also offered fake transaction screenshots for the victim to feel legitimate. The above proof shows how wrongly they were thinking and gives some useful information about their business.

Displays the bank details shared by the scammer.

Common Features of Fake Booking Websites

The fake websites exhibit the following features:

  • Lack of Official Verification: The domains carry minimal contact information, which cannot be verified from any authentic sources.
  • Suspicious Payment Practices: Personal accounts or third-party payment gateway options such as Google Pay, UPI ID create a source of doubtability.
  • Misleading Domain Names: Domain names are quite similar and somewhat using slight differences in making the problem identification challenging for users to determine the actual website.
  • Unrealistic Offers: Discounts seem to be too good to be true, often a great lure for victims.

Harm of Such Scams

Not only does it make a loss for the individual but also worries about the schedule of visiting when a person plans each trip. The fraudsters take advantage of the trust and urgency of travelers booking rooms at that time when people come in large numbers for festivals like Kumbh Mela.

How a Cybersecurity Company Like Foresiet Can Help

Foresiet being a top company in cybersecurity serves as a mainstay in halting fraudulent dealings, especially those that take place during big-ticket events such as Kumbh Mela.

  • Monitoring and Identifying Threats: Foresiet uses sophisticated mechanisms to monitor the web and determine diverse threats, like fake domains and phishing attempts developed to scam visitors and businesses taking part in mega events.
  • Domain Analysis and Reporting: Foresiet specializes in digging into registration details of the domains, hosting, and suspicious patterns. By finding out who actually owns these rogue websites, this organization assists with quick takedown and safeguards people against online fraudsters.
  • Strengthening Digital Trust: Foresiet collaborates with industries that are legitimate to enhance their security online. They install SSL certificates, enforce two-factor authentication, and secure payment gateways, making it more difficult for scammers to mimic trusted brands and deceive customers.
  • Educating the Public: Foresiet understands the importance of cybersecurity awareness. The company conducts public awareness campaigns, webinars, and shares insightful reports to educate travelers on how to recognize scams and adopt safer online practices, empowering them to make informed decisions.
  • Incident Response: In case of an attack, Foresiet is prepared with an incident response team. They provide on-the-spot incident surveillance, help with data recovery, and guide victims through the reporting process provided the matter is effectively handled by the suitable authorities.
  • Collaborating with Authorities: Foresiet closely cooperates with law enforcement and regulatory agencies. It ensures that fraudulent sites are shut down quickly and law breakers taken to courts. The collaboration boosts the appeal of the campaign in the fight against online fraud and consequently protects the electronic space.

Foresiet offers strong cybersecurity solutions that help to protect people and organizations from online fraud, which increases manifold during high-profile events like Kumbh Mela.

Preventive Measures for Travelers

Travellers can take innumerable preventive measures for their safety while traveling. One of the essential preventative measures is to check whether the booking information is genuine or not. A person must cross-check information on websites with official sources or directly with the hotel. Travellers should not remit money into private accounts or unknown UPI IDs, as accurate businesses use safe and transparent payment gateways.

Conducting in-depth research by looking at the reviews on the platforms one trusts is another practical method of ensuring that services are reliable. Lastly, sticking to reputed booking platforms such as Booking.com, MakeMyTrip, or Agoda can help assure safe and secure transactions.

Conclusion

The scam going on in regard to Birla Dharamshala domains shows how one must be careful while booking the accommodations online. Frauds take benefit of the fact that tourists need their accommodations during extreme demand periods, such as a fair like Kumbh Mela, when they are confused and not completely updated. By choosing safe practices and reporting suspicious movements, we can together battle these scams and guard others from being victimized by these deceptive schemes.


About us!

Foresiet is the pioneering force in digital security solutions, offering the first integrated Digital Risk Protection SaaS platform. With 24x7x365 dark web monitoring and proactive threat intelligence, Foresiet safeguards against data breaches and intellectual property theft. Our robust suite includes brand protection, takedown services, and supply chain assessment, enhancing your organization's defense mechanisms. Attack surface management is a key component of our approach, ensuring comprehensive protection across all vulnerable points. Compliance is assured through adherence to ISO27001, NIST, GDPR, PCI, SOX, HIPAA, SAMA, CITC, and Third Party regulations. Additionally, our advanced antiphishing shield provides unparalleled protection against malicious emails. Trust Foresiet to empower your organization to navigate the digital landscape securely and confidently.

Safeguard Your Reputation, Data, and Systems

Protect your brand, reputation, data, and systems with Foresiet's Integrated Digital Risk Platform. 24/7/365 threat monitoring for total peace of mind.

dashboard