# niharika-penugonda.github.io — MALICIOUS > PhishDestroy analysis reveals niharika-penugonda.github.io as a credential theft phishing site, flagged by 18/95 VirusTotal scanners. ## Summary PhishDestroy identifies niharika-penugonda.github.io as a high-risk phishing domain with a confirmed credential theft operation. The site is hosted on GitHub Pages but employs deceptive tactics to harvest user credentials. No known brand impersonation or drainer kit is associated with this domain, but its structure suggests a generic phishing campaign targeting unsuspecting users. The threat actor leverages GitHub’s infrastructure to bypass traditional hosting restrictions, increasing the risk of successful credential capture. This domain exhibits multiple red flags confirmed by independent threat intelligence sources. PhishDestroy’s analysis reveals it was flagged by 18 out of 95 VirusTotal security vendors, indicating widespread detection as a malicious or suspicious entity. Registered through GitHub, Inc., the domain resolves to IP address 185.199.108.153 and has been flagged as a phishing site by Google Safe Browsing. With a high-risk classification, this domain poses an immediate threat to users who interact with it. As of the latest assessment, niharika-penugonda.github.io remains an active threat and has not been taken down. GitHub has not yet suspended the associated repository, leaving users vulnerable to exploitation. PhishDestroy recommends blocking access to this domain at the network level and avoiding any interaction with its content. The remaining risk is high due to the domain’s continued availability and the lack of active intervention from hosting providers. Users should report this domain to their security teams or relevant authorities to expedite its removal. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: GitHub, Inc. - IP: 185.199.108.153 ## Detection Status - VirusTotal: 18 vendors flagged - Google Safe Browsing: FLAGGED - Blocklists: 0 hits ## Evidence - PhishDestroy: https://phishdestroy.io/domain/niharika-penugonda.github.io/ - LLM endpoint: https://phishdestroy.io/domain/niharika-penugonda.github.io/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/niharika-penugonda.github.io/ Last updated: 2026-03-26