#FactCheck - Viral Video Showing Man Frying Bhature on His Stomach Is AI-Generated
Team CyberPeace
CyberPeace
PUBLISHED ON
Jan 18, 2026
10
A video circulating on social media shows a man allegedly rolling out bhature on his stomach and then frying them in a pan. The clip is being shared with a communal narrative, with users making derogatory remarks while falsely linking the act to a particular community.
CyberPeace Foundation’s research found the viral claim to be false. Our probe confirms that the video is not real but has been created using artificial intelligence (AI) tools and is being shared online with a misleading and communal angle.
Claim
On January 5, 2025, several users shared the viral video on social media platform X (formerly Twitter). One such post carried a communal caption suggesting that the person shown in the video does not belong to a particular community and making offensive remarks about hygiene and food practices..
Upon closely examining the viral video, several visual inconsistencies and unnatural movements were observed, raising suspicion about its authenticity. These anomalies are commonly associated with AI-generated or digitally manipulated content.
To verify this, the video was analysed using the AI detection tool HIVE Moderation. According to the tool’s results, the video was found to be 97 percent AI-generated, strongly indicating that it was not recorded in real life but synthetically created.
Conclusion
CyberPeace Foundation’s research clearly establishes that the viral video is AI-generated and does not depict a real incident. The clip is being deliberately shared with a false and communal narrative to mislead users and spread misinformation on social media. Users are advised to exercise caution and verify content before sharing such sensational and divisive material online.
A video showing a woman giving a facial massage to an elderly man with a white beard is going viral on social media, with users claiming that the man is Prime Minister Narendra Modi. Some posts describe it as a “leaked massage video” of the Prime Minister, while others sarcastically link it to the glow on his face. However, research by the CyberPeace Research Wing found that the claim is false. The viral video has no connection to Narendra Modi and is being shared with a misleading narrative.
Claim
An X user named Sonu Singh shared the video with the caption: “Narendra Modi video leaked.”
To verify the claim, we extracted keyframes from the viral video and conducted a reverse image search. This led us to the same video uploaded on April 12, 2026, on the Instagram and Facebook pages of content creator Pradeep Kaur Dhillon, where it was captioned “Massage time.”
Further checks revealed another similar video posted on March 28, 2026, on the same social media accounts, with the caption: “Stylish, Spa day for him… kyunki self-care sirf ladies layi nahi.”
During the research, we also found that the man seen in the video is Jaspal Singh, Dhillon’s partner, who frequently appears in her social media posts. According to publicly available profile details, the duo resides in New Jersey, USA, and originally belongs to Amritsar, Punjab, India.
The viral claim is false. The video does not show Prime Minister Narendra Modi. It features content creators Pradeep Kaur Dhillon and Jaspal Singh and is being circulated online with a false and misleading claim.
A video from the Parliament complex is being widely shared on social media with the claim that Bharatiya Janata Party (BJP) MP Kangana Ranaut has come out in support of the ongoing Cockroach Janata Party (CJP)-led protest at Delhi’s Jantar Mantar. The viral post claims that Ranaut can be seen raising slogans in support of the protesters. CyberPeace Research Wing’s research found the claim to be misleading. The viral footage is not related to the ongoing CJP protest. It dates back to April 2026, when BJP women MPs staged a demonstration outside Parliament after the 131st Constitutional Amendment Bill failed to pass. The old video is now being falsely linked to the current protest.
Claim:
On July 20, 2026, an X (formerly Twitter) user shared the viral video claiming that “BJP MP Kangana Ranaut has now started protesting against her own party.”
The post link, archive link and screenshot are provided below.
To verify the claim, the Desk extracted keyframes from the viral video and conducted a reverse image search using Google Lens. This led to the same video uploaded on the Instagram account ashutoshjourno on April 17, 2026. The caption accompanying the post read, “Aaj Makar Dwar ka nazara alag tha” (The scene at Makar Dwar was different today).
In the next stage of the research, the Desk carried out a keyword search based on the clues obtained from the Instagram post. This led to a Zee News report published on April 17, 2026, which reported that NDA MPs staged a protest outside Parliament after the 131st Constitutional Amendment Bill failed to pass. The visuals in the report matched those seen in the viral video.
CyberPeace Research Wing’s research found the viral claim to be misleading. The video is unrelated to the ongoing CJP protest at Jantar Mantar. It was recorded in April 2026, when BJP women MPs protested outside Parliament following the failure of the 131st Constitutional Amendment Bill to pass. The old footage is now being falsely shared as a recent video of Kangana Ranaut supporting the CJP protest.
Cyber incidents are evolving along with time, they are designed to attract and lure people through social networking sites and/or messaging services. In the recent past a spate of messages alleging that TRAI is offering ‘3 months free recharge with free voice calls and internet for 4g/5g with 200 GB free data’. These messages display the TRAI logo with attractive offers to trick the users into revealing their personal details. This blog discusses the functioning of this free mobile recharge scheme, its methods and guidelines on how to avoid such fake schemes. This blog explains the importance of vigilance and verification when receiving any links, emphasizing the need to report suspicious activities and educate others to prevent identity theft and protect personal information.
Claim:
The message circulated an enticing offer: free mobile recharge for 3 months which provides unlimited free voice calls with 200GB 4G/5G data with TRAI logo. The key characteristics of the false claims are
Official Branding: The logo of TRAI has been viewed as a deceptive facade of credibility.
Unrealistic Offers: It is accompanied by a free recharge , which is intended for an extended period indefinite period, like most fraudsters’ bait.
Urgency and Exclusivity: The offer is for a limited time to make urgency forcing the receiver to take the offer without confirmation.
The Deceptive Scheme:
Organized systematically, the fraudulent campaign usually proceeds in several steps, all of which aim at extracting the victim’s personal data. Here’s a breakdown of the scheme:
1. Initial Contact: Such messages or calls reach the users’ inboxes or phone numbers through social media applications such as WhatsApp or through text messages. These messages further implies that the user was chosen for the special offer from TRAI, which elicits the interest of the user.
2. Information Request: To claim the purported offer, users are directed to a website or asked to reply with personal details, including:
Phone number
State of residence
SIM provider details
This is useful for the scammers as they harvest information which can be used to conduct identity theft or sold to others on the shady part of the internet known as the ‘Dark Web’.
3. Fake Confirmation: After providing all the information, a congratulatory message appears on the screen showing that their phone number is eligible for the offer. The user is compelled to forward the message to many phone numbers through whatsapp to get the offer.
4. Pressure Tactics: The message often implies a sense of time constraint or fear which psychologically produces pressure to provide all the user information. For example, users are given messages such as that if they do not ‘act now’, they will lose their mobile service.
Analyzing the Fraudulent Campaign
The TRAI fraudulent recharge scheme case depicts that social engineering is used in cyber crimes. Here are some key aspects that characterize this campaign:
Sophisticated Social Engineering
Scammers take advantage of the holders’ confidence in official bodies such as TRAI. By using official TRAI logos, official language they try to deceive even cautious people.
Viral Spread
The user is compelled to share the given message to friends and groups; this is an excellent strategy to spread the scam. It not only spreads the fraudulent message but also tries to extract the details of other people.
Technical Analysis
Domain Name: SGOFF[.]CYOU
Registry Domain ID: D472308342-CNIC
Registrar WHOIS Server: whois.hkdns.hk
Registrar URL: http://www.hkdns.hk
Updated Date: 2024-07-24T18:50:48.0Z
Creation Date: 2024-07-19T18:48:44.0Z
Registry Expiry Date: 2025-07-19T23:59:59.0Z
Registrar: West263 International Limited
Registrar IANA ID: 1915
Registrant State/Province: Anhui
Registrant Country: CN
Name Server: NORMAN.NS.CLOUDFLARE.COM
Name Server: PAM.NS.CLOUDFLARE.COM
DNSSEC: unsigned
Cloudflare Inc. is used to cover the scam. The real website always uses the older domain while this url has been registered recently which indicates that this link is a scam.
Img source: Virus Total
The graph indicates that some of the communicated files and websites are malicious.
CyberPeace Advisory and Best Practice:
In light of the growing threat posed by such scams, the Research Wing of CyberPeace recommend the following best practices to help users protect themselves:
1. Verify Communications: It is always advisable to visit the official site of the organization or call the official contact numbers of the company to speak to their customer care and clarify about the offers.
2. Do not share personal information: No genuine organization will call the people for personal information. Step carefully and do not provide personal information that will lead to identity theft when dealing with such offers.
3. Report Fraudulent Activity: If one receives any calls or messages that seem to be suspicious, then the user can report cyber crimes to the National Cyber Crime Reporting Portal on www. cybercrime. gov. in or call on 1930. Such scams are reportable and assist the authorities in tracking and fighting the vice.
4. Educate Others : Always raise awareness among friends by sharing these kinds of scams. Educating people helps to avoid them falling prey to such fraudulent schemes.
5. Use Reliable Resources : Always refer to official sources or websites for any kind of offers or promotions.
Conclusion:
The free recharge scheme for 3 months with the logo of TRAI is a fraudulent scam. There is no official information from TRAI or in their official website about this free recharge scheme. Though the scheme looks attractive, it is deceptive. Through this, the scammers are trying to collect personal details of the individual. Before clicking any links, it is necessary to check the authenticity of the information, report these kinds of incidents to spread awareness among people. Always be safe and be vigilant.
Become a part of our vision to make the digital world safe for all!
Numerous avenues exist for individuals to unite with us and our collaborators in fostering global cyber security
Awareness
Stay Informed: Elevate Your Awareness with Our Latest Events and News Articles Promoting Cyber Peace and Security.
Your institution or organization can partner with us in any one of our initiatives or policy research activities and complement the region-specific resources and talent we need.