k-chandri[.]github[.]io
فحص التصيد والأمان للنطاق k-chandri.github.io
“Site not found · GitHub Pages”
k-chandri.github.io — المحتوى غير متوفر (HTTP 404). نوع الاحتيال: Crypto Drainer. ملخص الأدلة: VirusTotal 15/92 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 1 alert; PhishDestroy score 100/100. مسجّل النطاق: GitHub.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies k-chandri.github.io as an elevated-risk cryptocurrency wallet drainer deployed on GitHub Pages. The domain masquerades as a legitimate project page to trick users into connecting crypto wallets and approving malicious token transfer permissions. No specific brand or drainer kit signature is publicly documented yet, but the infrastructure is consistent with clipboard-hijacking and approval-phishing campaigns targeting Ethereum and ERC-20 token holders. Users should assume any “project” hosted on this page is hostile and refrain from interacting with wallet connection prompts or download links.
Technical indicators for k-chandri.github.io are conclusive: VirusTotal detection ratio is 15 out of 95 participating engines; the domain resolves to AS GitHub Pages on IPv4 address 185.199.108.153; registration is performed through GitHub, Inc. via the GitHub Pages service; the SSL certificate is issued by Let’s Encrypt. PhishDestroy’s telemetry confirms the domain has appeared on one public blocklist curated by OpenPhish, and Google Safe Browsing currently lists the page with an elevated status. Creation date, exact hosting provider, and additional DNS artifacts remain opaque due to GitHub’s abstraction layer, but the evidence is sufficient to classify this site as an active crypto drainer.
The domain remains live and active as of the latest scan, with a currently elevated threat status and an ongoing presence on a single blocklist and in VirusTotal detections. GitHub has not yet taken down the repository despite multiple community reports, indicating a potential blind spot in GitHub Pages abuse handling. Immediate user action includes blocking the domain at the network perimeter, disabling any connected wallet approvals, and reporting the page to GitHub Trust & Safety and OpenPhish for priority takedown. The residual risk remains elevated until the GitHub-hosted content is purged, as attackers can rapidly re-spawn similar pages under new repository names. Users are advised to treat any GitHub Pages subdomain as untrusted until GitHub implements stricter content moderation for Pages domains that request wallet permissions.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | k-chandri.github.io |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of k-chandri.github.io · checked May 8, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب