mussa-esliman[.]github[.]io
mussa-esliman.github.io की फ़िशिंग और सुरक्षा जाँच
“Apple Responsive Replica”
mussa-esliman.github.io — सामग्री अनुपलब्ध (HTTP 404). ब्रांड प्रतिरूपण: Apple; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 12/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Emsisoft); URLScan malicious verdict; PhishDestroy score 86/100. रजिस्ट्रार: GitHub.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain, mussa-esliman.github.io, is flagged as an active brand impersonation threat targeting Apple. Analysis indicates the site mimics Apple’s official branding and design, likely to deceive users into submitting credentials or financial information. The page title, 'Apple Responsive Replica,' further confirms the intent to replicate Apple’s legitimate interface, a common tactic in credential theft and fraud campaigns. No evidence of a crypto drainer kit was observed, but the infrastructure aligns with credential harvesting operations. Infrastructure analysis reveals the domain resolves to the IP address 185.199.109.153, hosted on AS54113 (Fastly, Inc.) in the United States. The domain is registered through GitHub, Inc., and utilizes an SSL certificate issued by Let’s Encrypt (YR2). Security vendor assessments on VirusTotal show 12 out of 95 detections, indicating a moderate-to-high confidence level in its malicious nature. The domain appears on one security blocklist and is actively blocked by at least one threat intelligence feed. No creation date was provided, but the use of GitHub Pages suggests recent deployment, as such services are frequently abused for short-lived phishing campaigns. Current status confirms the domain remains active, posing an ongoing risk to users. Response actions should include immediate blacklisting by network security controls, DNS sinkholing, and browser-based blocking to prevent access. Users who may have interacted with the domain are advised to reset credentials, enable multi-factor authentication, and monitor accounts for unauthorized activity. Despite mitigation efforts, the risk persists due to the domain’s continued operation and the potential for rapid redeployment under a new identifier. Organizations should prioritize awareness training to recognize brand impersonation tactics and verify domain authenticity before entering sensitive information.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com 100% विश्वासवायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।