shubhamsinha6244-hub.github.io is presently active and has been classified as a generic phishing site. Infrastructure analysis shows the domain resolves to the IP address 185.199.108.153, which belongs to the GitHub Pages hosting service. The registrar information confirms the domain was registered through GitHub, Inc., indicating use of a legitimate cloud‑hosting provider to mask malicious activity. The domain’s authoritative name servers could not be identified (NS_NOT_FOUND), suggesting either reliance on default GitHub DNS settings or recent alteration of DNS records. Reputation services provide consistent evidence of malicious intent. Google Safe Browsing flags the domain for social engineering, and two independent blocklists—PhishDestroy and OpenPhish—have already listed the host.
VirusTotal reports that eight out of ninety‑one scanned security vendors have flagged the domain, reinforcing the high‑risk assessment despite the relatively low detection count. The cumulative risk rating is therefore set to high. The available data does not include HTTP response codes, SSL certificate details, page titles, or any observed payload. Consequently, the exact phishing vector remains unknown. Defenders should treat any traffic to this host as hostile.
Recommended mitigations include adding the domain to inbound and outbound deny lists, updating web‑proxy and DNS filtering rules, and monitoring for connections to the underlying IP address 185.199.108.153, which may be shared with benign GitHub Pages sites. Given that the IP address is part of a large public hosting pool, blanket blocking of the address could impact legitimate GitHub Pages traffic; therefore, rule sets should target the fully qualified domain name rather than the entire address space. Continuous monitoring of the domain’s DNS records is advised because changes to the name server configuration may occur, potentially altering the hosting profile.