nanigudivaka[.]github[.]io
nanigudivaka.github.io की फ़िशिंग और सुरक्षा जाँच
“Amazon Project”
nanigudivaka.github.io — सामग्री अनुपलब्ध (HTTP 404). ब्रांड प्रतिरूपण: Amazon; घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 10/91 (Criminal IP, alphaMountain.ai, BitDefender, ESET, Forcepoint ThreatSeeker); URLScan malicious verdict; PhishDestroy score 80/100. रजिस्ट्रार: GitHub.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain is flagged as a high-risk phishing site specializing in brand impersonation, specifically targeting users with a fake Amazon login portal. The fraudulent page, titled 'Amazon Project,' is designed to harvest credentials by mimicking legitimate Amazon authentication flows, a tactic commonly associated with credential theft and subsequent account compromise. Analysis indicates the domain nanigudivaka.github.io is registered through GitHub, Inc., and resolves to the IP address 185.199.111.153, geolocated in the United States under AS54113 (Fastly, Inc.). The SSL certificate is issued by Let's Encrypt (R12), a common choice for both legitimate and malicious sites. The domain appears on one security blocklist and is flagged by 10 out of 95 security vendors on VirusTotal, with the current status remaining active. The infrastructure leverages GitHub Pages, a hosting service frequently abused for phishing due to its free availability and association with trusted domains. Mitigation steps for this specific threat type include immediate blocking of the domain and IP at the network perimeter. Organizations should deploy web filtering rules to prevent access to the domain and its resolved IP address. End-users should be educated on identifying brand impersonation tactics, such as scrutinizing URL structures, checking for HTTPS validity, and verifying the legitimacy of login portals through official channels. Credential managers or multi-factor authentication (MFA) should be enforced to mitigate the impact of stolen credentials. Security teams are advised to monitor for indicators of compromise (IOCs) associated with this domain, including the resolved IP and SSL certificate thumbprint, to detect potential breaches.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com 100% विश्वासवायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।