# shivam-purve.github.io — MALICIOUS > shivam-purve.github.io hosts credential harvesting phishing targeting users, flagged by 13 of 95 VirusTotal vendors. Check the full report. ## Summary The domain shivam-purve.github.io is actively engaged in credential harvesting phishing campaigns, posing an elevated risk to users. This domain does not currently impersonate a specific brand but aims to collect sensitive login credentials from unsuspecting victims. The phishing threat remains active and requires immediate attention to prevent further compromise. This domain is registered through GitHub, Inc. and secured with a Let's Encrypt SSL certificate. It resolves to the IP address 185.199.108.153. According to VirusTotal data, 13 out of 95 security vendors have flagged this domain as malicious. The domain leverages GitHub Pages hosting infrastructure, which may contribute to its perceived legitimacy. Although the registration date and blocklist count are not specified, the elevated risk level and multiple detections indicate a persistent threat. Currently, shivam-purve.github.io remains active and should be blocked or monitored closely by security teams. Users are advised to avoid interacting with any links or forms hosted on this domain. Organizations should implement domain filtering and update threat intelligence feeds to include this domain. Continuous vigilance and user education about credential harvesting techniques are essential to mitigate risks associated with this and similar phishing domains. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: GitHub, Inc. - IP: 185.199.108.153 ## Detection Status - VirusTotal: 13 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/4aed3e42-58a5-47ad-b3a4-baf0b0efb774 - PhishDestroy: https://phishdestroy.io/domain/shivam-purve.github.io/ - LLM endpoint: https://phishdestroy.io/domain/shivam-purve.github.io/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/shivam-purve.github.io/ Last updated: 2026-04-12