MALICIOUS — CRITICAL
harshamreliya1348[.]github[.]io
This domain, harshamreliya1348.github.io, is flagged as a credential theft operation targeting users through deceptive login portals.
- VirusTotal
- 7/91
- Blocklists
- No stored match
- التوفر
- المحتوى غير متوفر · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
harshamreliya1348.github.io — المحتوى غير متوفر (HTTP 404). انتحال العلامة التجارية: Amazon; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 7/91 (alphaMountain.ai, Emsisoft, G-Data, Gridinsoft, Netcraft); URLScan malicious verdict; PhishDestroy score 71/100. مسجّل النطاق: GitHub.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
Is harshamreliya1348.github.io a Credential Theft Site?
harshamreliya1348.github.io is a credential theft domain flagged by 7/95 security vendors. Hosted on GitHub Pages, it impersonates trusted services to harvest.
This domain, harshamreliya1348.github.io, is flagged as a credential theft operation targeting users through deceptive login portals. Analysis indicates no direct association with a specific brand or drainer kit, but the infrastructure aligns with common phishing tactics used to harvest usernames, passwords, and session tokens. The domain lacks overt branding, suggesting a generic or opportunistic campaign rather than a targeted impersonation of a well-known service. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 185.199.108.153 and was created on June 15, 2026, though this date may reflect GitHub Pages' automated registration rather than attacker-controlled timing. It appears on one security blocklist and is flagged by 7 out of 95 security vendors on VirusTotal. The SSL certificate is issued by Let's Encrypt (R12), and the domain is currently hosted through GitHub, Inc. The page title, 'Site not found · GitHub Pages,' may indicate a placeholder or a recently deactivated phishing page, though the domain remains active. Current status shows the domain is still operational, though the visible content does not match typical phishing page behavior. Users and network defenders are advised to block traffic to this domain at the DNS or network level, as residual risk persists due to its presence on security blocklists and vendor detections. Monitoring for renewed activity or updated content is recommended, as GitHub Pages domains can be rapidly repurposed for malicious campaigns. No direct financial drainer or cryptocurrency wallet identifiers were observed in the available data.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com ثقة 100٪تحليل VirusTotal
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.