MALICIOUS — CRITICAL
vishalrawat5[.]github[.]io
This domain, vishalrawat5.github.io, is identified as an active phishing endpoint leveraging GitHub Pages infrastructure to distribute credential-harvesting content.
- VirusTotal
- 12/92
- Blocklists
- No stored match
- التوفر
- المحتوى غير متوفر · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
vishalrawat5.github.io — المحتوى غير متوفر (HTTP 404). نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 12/92 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 1 alert; PhishDestroy score 91/100. مسجّل النطاق: GitHub.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain, vishalrawat5.github.io, is identified as an active phishing endpoint leveraging GitHub Pages infrastructure to distribute credential-harvesting content. Analysis indicates the site employs generic phishing techniques, likely mimicking legitimate login portals to capture user credentials or financial information. Despite displaying a 'Site not found' title, forensic evidence confirms the presence of malicious payloads, suggesting a cloaking mechanism or incomplete deployment at the time of inspection. Infrastructure analysis reveals the domain resolves to the IP address 185.199.108.153, registered under GitHub, Inc., with an SSL certificate issued by Let's Encrypt (R12). The domain was created on May 08, 2026, though this appears to be a placeholder or erroneous entry, as GitHub Pages domains are typically subdomains of github.io and do not follow traditional registration timelines. Detection metrics show 12 out of 95 security vendors flagging the domain on VirusTotal, while it appears on one security blocklist. Google Safe Browsing (GSB) status is not explicitly listed, but the presence on PhishDestroy’s blocklist corroborates its malicious classification. As of the latest assessment, vishalrawat5.github.io remains active, posing a high risk to users who may encounter it through phishing links distributed via email, social media, or malicious advertisements. The use of GitHub Pages infrastructure complicates takedown efforts due to the platform’s legitimate hosting of static content. Users are advised to avoid interacting with the domain, and network administrators should implement blocking rules for the IP 185.199.108.153 and associated subdomains. Continuous monitoring is recommended, as threat actors frequently rotate domains and IPs to evade detection.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | vishalrawat5.github.io |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of vishalrawat5.github.io · checked May 8, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.