haad-ahmad-qureshi[.]github[.]io
“Site not found · GitHub Pages”
haad-ahmad-qureshi.github.io — Contenu indisponible. Résumé des preuves: VirusTotal 8/91 (alphaMountain.ai, Emsisoft, Forcepoint ThreatSeeker, G-Data, Gridinsoft); PhishDestroy score 83/100. Bureau d’enregistrement: GitHub.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain haad-ahmad-qureshi.github.io was registered through GitHub, Inc., indicating that the authoritative registrar is the GitHub platform itself. No public nameserver information is available (NS_NOT_FOUND). DNS resolution points to the IPv4 address 185.199.108.153, which is part of GitHub’s hosting infrastructure. VirusTotal analysis returned a detection ratio of 8 out of 95 security vendors, confirming that multiple independent scanners have identified malicious activity associated with the domain. The threat is classified as generic phishing with a high risk rating and remains active as of the report date, July 22, 2026.
The domain is currently listed on two security blocklists, specifically PhishDestroy and OpenPhish, which both actively block traffic to the host. Available evidence confirms the hosting context and the presence of detections, but several aspects remain uncertain. The lack of publicly listed nameservers limits the ability to trace delegation changes, and no SSL certificate details, HTTP response codes, or page title information have been provided, preventing assessment of transport security or content cues. No additional attribution such as ASN, country, or affiliated malicious kit has been disclosed, so the broader infrastructure footprint cannot be fully mapped.
Defenders should incorporate the domain into existing URL filtering, DNS sinkholing, and blocklist ingestion workflows. Given the presence on PhishDestroy and OpenPhish, most major security platforms already flag the host, but manual inclusion in custom allow‑lists or DNS firewall policies is advisable to ensure coverage across disparate environments. Continuous monitoring of VirusTotal and any future threat‑intel feeds is recommended to capture changes in detection count or new attribution signals. Until further forensic detail becomes available, the domain should be treated as a high‑confidence phishing indicator and blocked at network perimeters.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com Confiance à 100 %Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of haad-ahmad-qureshi.github.io · checked Jul 22, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif