muhammadwaleedqazi[.]github[.]io
“Site not found · GitHub Pages”
Resumen de las pruebas
This domain, muhammadwaleedqazi.github.io, is actively engaged in credential harvesting phishing operations targeting users through deceptive login interfaces masquerading as legitimate services. Analysis indicates the infrastructure is designed to capture sensitive authentication details, including usernames, passwords, and potentially multi-factor authentication codes, by presenting fraudulent replicas of trusted platforms. The domain leverages GitHub Pages hosting to evade traditional detection mechanisms, exploiting the reputation of a widely used development platform to bypass initial scrutiny and increase the likelihood of successful compromise. Infrastructure analysis reveals the domain resolves to the IP address 185.199.110.153, associated with GitHub, Inc., and is registered through the same entity. Despite its recent creation date of March 26, 2026, the domain has already been flagged by 17 out of 95 security vendors on VirusTotal, indicating a rapid escalation in detection. It appears on one confirmed security blocklist, with Google Safe Browsing explicitly categorizing it as a phishing threat. The SSL certificate, issued by Let's Encrypt (R12), provides encrypted communication, further lending an illusion of legitimacy to unsuspecting users. The page title, 'Site not found · GitHub Pages,' suggests an attempt to obfuscate malicious activity behind a generic error message, a tactic commonly employed to delay discovery. Users who have interacted with this domain should immediately terminate any active sessions and assume their credentials have been compromised. All passwords associated with accounts accessed during the interaction period must be reset using a secure, unrelated device. Multi-factor authentication tokens or recovery codes used on the domain should be revoked and replaced. System administrators are advised to block the domain and its resolving IP address (185.199.110.153) at the network perimeter to prevent further exposure. Monitoring for unauthorized access or anomalous activity in linked accounts is critical, particularly within 24-48 hours of potential exposure. Organizations should review logs for connections to the domain or IP to assess the scope of any breach.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 13/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of muhammadwaleedqazi.github.io · checked Apr 7, 2026
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.