Ir al informe de seguridad
Checked 09/08/2026 Ref C4C49A49

MALICIOUS — CRITICAL

ninshavu-web[.]github[.]io

16 of 91 security engines flagged the domain; the latest stored check returned HTTP 404.

95/100 evidence score · Critical
VirusTotal
16/91
Blocklists
No stored match
Disponibilidad
Contenido no disponible · HTTP 404
Report / Add Evidence Appeal this listing
2026-06-24 08:18 UTCContenido no disponible · HTTP 404

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Este dominio ha sido señalado como malicioso
Motores de seguridad que informan una detección: 16. Tenga extrema precaución: no ingrese credenciales o información personal.
Jump to section
Resumen del informe

ninshavu-web.github.io — Contenido no disponible (HTTP 404). Tipo de estafa: Credential Phishing. Resumen de las pruebas: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Certego, CyRadar); Google Safe Browsing flagged; PhishDestroy score 95/100. Registrador: GitHub.

El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.

Evidence Digest

Ref C4C49A49

ninshavu-web.github.io is classified critical with an evidence score of 95/100. 16 of 91 security engines flagged the domain. Registered 14 May 2026 via GitHub, Inc., hosted on 185.199.108.153 (FASTLY - Fastly, Inc., US, US). The latest stored check on 9 Aug 2026 returned HTTP 404 and includes a capture.

Stored generated summary (templated)openai · 07/07/2026

Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.

Analysis of the domain ninshavu-web.github.io indicates that it was used for credential theft, specifically impersonating Netflix. The domain leverages a Let's Encrypt SSL certificate, which helps to build trust with unsuspecting users and potentially increases the success rate of the phishing campaign.

Technical indicators of ninshavu-web.github.io include a VirusTotal score of 16/95, indicating that 16 out of 95 security vendors flag this domain as malicious. The domain is registered through GitHub, Inc., and resolves to the IP address 185.199.108.153. The creation date is not provided, but the domain appears on one security blocklist and is flagged by Google Safe Browsing for social engineering. It is also blocked by PhishDestroy.

Currently, ninshavu-web.github.io is offline, reducing the immediate risk of users falling victim to the phishing attempt. However, the domain could be brought back online at any time, and the infrastructure remains a potential threat. Organizations and individuals should ensure that they have updated their blocklists and security measures to prevent access to this domain. Remaining vigilant and educating users about the signs of phishing attacks is crucial to maintaining security.

VirusTotal
VirusTotal
16 det.
URLScan
URLScan
Certificado TLS
Caducado o no verificado -35d
Edad
3 mo New
Estado observado
Contenido no disponible 404
PhishDestroy
DestroyList
En lista
Cobertura de los datos12 recorded checks
VirusTotal 16 / 91 URLQuery no comprobado PhishStats no comprobado OTX no community references CF Radar no data URLScan capture informe almacenado URLScan verdict veredicto no disponible Bloqueos de DNS no comprobado TLS Caducado o no verificado WHOIS 3 mo old Captura de pantalla captura externa Cadena de redireccionamientos no sondeado

Proceso de respuesta ante amenazas Pipeline

Descubrimiento
Checks
Reports
Disponibilidad
10/11

Estado de la lista de bloqueados pública

Captura guardada

Inteligencia de dominios

Dominio
Google Safe Browsing Marcado Social engineering checked 11/06/2026
Servidor / ASN GitHub.com · AS54113 FASTLY - Fastly, Inc., US
IP Context Fastly shared edge origin IP hidden La reputación de Edge-IP no se atribuye a este dominio.
Proveedor de plataforma GitHub
Contacto de abusoabuse@github.com
Dirección IP 185.199.108.153 CDN
UbicaciónUS San Francisco, US
RedAS54113 · Fastly, Inc.
La IP de origen está oculta detrás de un proxy CDN. Los resultados de IP inversa para la dirección perimetral contienen inquilinos no relacionados; encontrar el origen requiere DNS pasivo o datos de transparencia de certificado.
Estado HTTP404 Not Found
Tiempo hasta la primera indisponibilidad 2 days
Qué contabilizamos Tiempo transcurrido desde el primer informe de abuso almacenado hasta la primera observación de que el contenido no estaba disponible. Esto no establece la causa.
Qué contiene cada informe Los registros de informes salientes almacenados pueden hacer referencia a evidencia disponible en ese momento, como veredictos de proveedores, datos de registro, detalles de alojamiento, clasificaciones o capturas de pantalla. Esta página no infiere la carga útil entregada, el recibo, el acuse de recibo o la acción exacta por parte de un destinatario.
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
Primera detección11/06/2026
DOM Analysisanalyzed 11/06/2026score 0/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://ninshavu-web.github.io/Netflix
TLS Fingerprint
TLS Observationvalid from 06/04/2026scanned 11/06/2026
TLS SAN Domainsgithub.comgithub.iogithubusercontent.com
Título de la página
Netflix
Certificado TLS
Caducado o no verificado · Emitido por Let's Encrypt / R12
Denunciar este dominio Envía pruebas y ayuda a proteger a los demás

Análisis de VirusTotal

16 / Los proveedores de seguridad de 91 marcaron este dominio
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
Certego
CyRadar
Emsisoft
G-Data
Google Safebrowsing
Gridinsoft
Lionic
MalwareURL
Netcraft
Sophos
URLQuery
VIPRE
Webroot
Análisis del rendimiento del sitio

Google PageSpeed Insights — mobile performance audit of ninshavu-web.github.io · checked Jun 25, 2026

100
Good
Performance
FCP
0.8s
First Contentful Paint
LCP
0.8s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
0.8s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Datos y informes externosIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.

Europol
Encuentre el canal de denuncia oficial para su país de la UE
National police directory
¡Cuidado con los estafadores que se hacen pasar por empresas de recuperación de datos! Los delincuentes pueden volver a contactar a las víctimas haciéndose pasar por investigadores, abogados o agentes de recuperación. No pague tarifas por adelantado ni comparta credenciales. Más información sobre el fraude en las ayudas de recuperación →

Informa a las autoridades locales

Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.

directorio de 97 países
Borrador asistido por IA: el proveedor de IA procesa los detalles del incidente Revíselo y envíelo usted mismo
Incrustar este informeRead-only HTML widget
HTML · IFRAME

Incrustar este informe

Comparte esta información sobre amenazas en tu página web o blog

embed.html
<iframe
  src="https://phishdestroy.io/es/embed/domain/ninshavu-web.github.io"
  title="PhishDestroy threat report for ninshavu-web.github.io"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>