⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
Detected by 6 security vendors. Exercise extreme caution — do not enter personal information or connect wallets. साइबर अपराध प्राधिकरणों के पास दर्ज कराने के लिए एक आधिकारिक एआई-संचालित शिकायत पत्र उत्पन्न करें।
sam-string.github.io favicon

sam-string[.]github[.]io

डोमेन सुरक्षा और खतरे की खुफिया रिपोर्ट

“Site not found · GitHub Pages”

6/91 VT Content unavailable Jun 12, 2026 Unavailable since Jul 21, 2026 Amazon प्रमाणपत्र फिशिंग 27d to unavailable US US + more
73 जोखिम स्कोर
स्थानीयकृत रिपोर्ट सारांश

sam-string.github.io: VirusTotal पर 6/91 पहचान। DNS, SSL, रजिस्ट्रार, ब्लॉकलिस्ट और खतरे के साक्ष्य देखें।

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

PhishDestroy AI
HIGH
Ref
2FD63A5F
Score
73/100
Engine
PD-4 Turbo
This domain, sam-string[.]github[.]io, is actively engaged in credential theft operations targeting users through deceptive GitHub Pages infrastructure. Analysis indicates the site impersonates legitimate login portals or error pages to trick visitors into submitting sensitive authentication details, including usernames, passwords, and potentially multi-factor authentication codes. The domain leverages GitHub's hosting service to appear trustworthy, exploiting the platform's reputation to bypass initial user scrutiny and security filters. Infrastructure analysis reveals the domain was registered on June 12, 2026, through GitHub, Inc., and remains active as of this report. It resolves to the IP address 185.199.108.153 and is flagged by 6 out of 95 security vendors on VirusTotal. The domain appears on one security blocklist, and its SSL certificate is issued by Let's Encrypt (R12), a common choice for both legitimate and malicious sites. The page title, 'Site not found · GitHub Pages,' suggests an attempt to mimic a benign error page while potentially hosting hidden credential harvesting forms or redirecting users to external phishing pages. Users who have visited sam-string[.]github[.]io should immediately terminate any active sessions and revoke any credentials entered on the site. Reset passwords for all accounts where the same credentials may have been reused, prioritizing email, financial, and administrative accounts. Enable multi-factor authentication where available, using app-based or hardware tokens rather than SMS-based methods. Monitor accounts for unauthorized activity, including login attempts, password changes, or unfamiliar transactions. Network administrators should block the domain and its resolving IP address (185.199.108.153) at the perimeter firewall and DNS levels to prevent further exposure. Report the incident to internal security teams or relevant authorities for further investigation and mitigation.
VirusTotal
वायरसटोटल
6 det.
URLScan
यूआरएलस्कैन
Gridinsoft
0/100
आयु
2 mo New
Observed status
Content unavailable 404
PhishDestroy
विनाश सूची
Listed
डेटा कवरेज वायरसटोटल 6 / 91 यूआरएलक्वेरी no detections ओटीएक्स no pulses सीएफ रडार clean यूआरएलस्कैन report ready डीएनएस ब्लॉक none एसएसएल no cert कौन है 2 mo old Screenshot कैद नहीं हुआ चेन पुनर्निर्देशित करें not probed Gridinsoft 0/100

धमकी प्रतिक्रिया पाइपलाइन

Discovery
Checks
Reports
Availability
12/12
पूर्व-सक्रिय खोज एवं अवशोषण
धमकी निगल ली गई
1/1 ✓
धमकी निगल ली गई
sam-string.github.io पहचाना गया और पूर्ण विश्लेषण के लिए कतारबद्ध किया गया
Jun 12, 2026
Threat Intelligence Checks
URLScan.io Snapshot · Cloudflare Radar · VirusTotal · Google Safe Browsing · Brand Impersonation · Forensic Evidence Collected · Technical Analysis Recorded
7/7 ✓
URLScan.io Snapshot
Submitted to urlscan.io — screenshot, DOM & HTTP transactions captured
Jun 12, 2026
क्लाउडफ्लेयर रडार
Scanned via क्लाउडफ्लेयर रडार — DNS, certificates & network data
वायरसटोटल
6 / 91 vendors flagged on वायरसटोटल
Jul 18, 2026
गूगल सुरक्षित ब्राउज़िंग
Jun 13, 2026
Brand Impersonation
Impersonation of Amazon
Forensic Evidence Collected
Stored evidence from URLScan.io, stored screenshot
Jun 12, 2026
Technical Analysis Recorded
The report contains stored technology or forensic-analysis results
Aug 01, 2026
Notification Records
दुर्व्यवहार की रिपोर्ट भेजी गई
1/1 ✓
दुर्व्यवहार की रिपोर्ट भेजी गई
दुरुपयोग की रिपोर्ट रजिस्ट्रार को भेजी गई GitHub, Inc., hosting provider, 1 abuse contact
abuse@github.com
Jun 12, 2026
प्रकाशन और उपलब्धता
DestroyList Published · Content Observed Unavailable · Time to First Unavailability
3/3 ✓
डिस्ट्रॉयलिस्ट प्रकाशित
Jun 12, 2026
Content Observed Unavailable
The latest stored checks indicate that the reported content is unavailable; this does not establish who or what caused the change
Jul 21, 2026
Time to First Unavailability
636 hours elapsed from detection to the first unavailable observation

सार्वजनिक ब्लॉकलिस्ट स्थिति

साक्ष्य संग्रह

Live Snapshot
2026-06-12 11:15 UTC
Malicious · 6/91 engines
Forensic screenshot of sam-string.github.io showing the phishing page layout
IP: 185.199.108.153
GitHub, Inc.
50d old

डोमेन इंटेलिजेंस

Domainsam-string.github.io
Registrar गिटहब
Abuse contactabuse@github.com
IP Address 185.199.108.153 US
GeoUS San Francisco, US
NetworkAS54113 · GitHub, Inc
Registrationनिर्मित Jun 12, 2026 (50d · New)
HTTP स्थिति404 Not Found
Time to First Unavailability 27 days
What we count Elapsed time from the first stored abuse report to the first observation that sam-string.github.io was unavailable. This does not establish the cause.
What each report contains Stored outgoing report records may reference evidence available at the time, such as vendor verdicts, registration data, hosting details, classifications, or screenshots. This page does not infer the exact payload delivered, receipt, acknowledgement, or action by a recipient.
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चलाJun 12, 2026
NameserversNS_NOT_FOUND
TLS Fingerprintea69bc711cb9d45698d2fdaa4854d7dc086acd3a…
Page Title
Site not found · GitHub Pages
साझा IP पड़ोसी · 8 other domains
185.199.108.153 is hosting 8 other flagged phishing/scam domains in our database. Co-hosting on a non-CDN IP is a strong bulletproof-hosting signal.
kenagent.xyz Active gaia.infiniti-ia.com Active eltor.app Active xoxminer.com Active usdtcportal.xyz Active trustwallet-access.com Active suika3.vn Active recovery.sequence.app Active
संबंधित अभियान सदस्य · 8 sharing fingerprint
Other tracked phishing domains sharing this site’s infrastructure fingerprint: GitHub, Inc. Amazon — suggests a coordinated kit / operator cluster.
gangasagarg1114-commits.github.io
Alive 9 VT
indu9548.github.io
Alive 9 VT
shubhamkumar-25.github.io
Unavailable 8 VT
atharvnavlakhe.github.io
Unavailable
devxnsh1.github.io
Unavailable
poojayadav40.github.io
Unavailable
niuj-tech.github.io
Unavailable 5 VT
stymm67.github.io
Unavailable 7 VT
Explore the Domain Hub Filter hub by this fingerprint
तकनीकें · 3 identified
Varnish
Caching

Varnish is a reverse caching proxy.

www.varnish-cache.org 100% confidence
GitHub Pages
PaaS

GitHub Pages is a static site hosting service.

pages.github.com 100% confidence
Fastly
CDN

Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.

www.fastly.com 100% confidence
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

6 / 91 security vendors flagged this domain
View on VT
alphaMountain.ai
Emsisoft
Forcepoint ThreatSeeker
G-Data
Gridinsoft
नेटक्राफ्ट

साक्ष्य और बाहरी रिपोर्टें

क्या आप इस साइट से प्रभावित हुए?

आप अकेले नहीं हैं और इसमें शर्म की कोई बात नहीं है। ठग परिष्कृत अपराधी होते हैं जो विश्वास का दुरुपयोग करते हैं। अपने अनुभव की रिपोर्ट करना धोखाधड़ी के खिलाफ सबसे शक्तिशाली हथियार है — आपकी रिपोर्ट दूसरों को शिकार बनने से रोक सकती है और कानून प्रवर्तन को कार्रवाई करने में मदद कर सकती है। चुप ठग का सबसे बड़ा फायदा है। इसे तोड़ो।

यदि आपने इस डोमेन के साथ इंटरैक्ट किया है, व्यक्तिगत जानकारी दर्ज की है, या क्रिप्टोकरेंसी वॉलेट जोड़ा है — तो तुरंत कार्रवाई करें। नीचे इस घटना की रिपोर्ट करने और खुद को सुरक्षित रखने में आपकी मदद करने के लिए संसाधन दिए गए हैं।

रिकवरी ठगों से सावधान रहें! धोखाधड़ी का शिकार होने के बाद, अपराधी फिर से आपसे संपर्क कर सकते हैं और खुद को "रिकवरी एजेंट", वकील या जांचकर्ता बता सकते हैं, जो दावा करते हैं कि वे शुल्क लेकर आपके खोए हुए पैसे वापस ला सकते हैं। यह दूसरा घोटाला है। कोई भी वैध सेवा चोरी हुए क्रिप्टो को वापस पाने के लिए अग्रिम भुगतान नहीं मांगेगी। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

प्राप्त करने के लिए अपना देश चुनें आधिकारिक साइबर अपराध संपर्क, or एआई-संचालित शिकायत उत्पन्न करें →

अपना देश चुनें...
180+ देश
ज़ीरो-पीआईआई — आपका डेटा कभी ब्राउज़र से बाहर नहीं जाता। एआई आपकी भाषा में लिखता है

संबंधित डोमेन रिपोर्टें

anjalibhavi04.github.io
anjalibhavi04.github.io
20 detections · Similar title
nishanmuhammed.github.io
nishanmuhammed.github.io
19 detections · Similar title
yugalsatav19.github.io
yugalsatav19.github.io
19 detections · Similar title
vidhiprajapati25.github.io
vidhiprajapati25.github.io
19 detections · Similar title
instagramhelp.whf.bz
instagramhelp.whf.bz
21 detections
app.meopex.com
app.meopex.com
12 detections
gooddogshop.click
gooddogshop.click
22 detections
go.puotox.com
go.puotox.com
12 detections

Other Domains on 185.199.108.153 6 phishing domains

This IP hosts multiple phishing domains — infrastructure shared across campaigns

atendimento-itau-0800.com.br favicon atendimento-itau-0800.com.br 22/95 danielackermann69.github.io favicon danielackermann69.github.io 21/95 muniraattar3.github.io favicon muniraattar3.github.io 21/95 shubham25b01010593.github.io favicon shubham25b01010593.github.io 20/95 azerty-46.github.io favicon azerty-46.github.io 20/95 f-case-feedback-appeal.github.io favicon f-case-feedback-appeal.github.io 20/95

More Domains at GitHub 6 झंडे लगे

shubhamsinha6244-hub.github.io favicon shubhamsinha6244-hub.github.io 8/95 shubhamkumar-25.github.io favicon shubhamkumar-25.github.io 8/95 prathamsquad18.github.io favicon prathamsquad18.github.io 7/95 kvrraviteja.github.io favicon kvrraviteja.github.io 7/95 ryanphqross9118.github.io favicon ryanphqross9118.github.io atharvnavlakhe.github.io favicon atharvnavlakhe.github.io

Other Amazon Impersonation Domains

These domains also target Amazon users. View all Amazon threats →

amazon-clone-blue-ten.vercel.app amazon-clone-blue-ten.vercel.app 28 amazon-clone-navy-eight.vercel.app amazon-clone-navy-eight.vercel.app 26 amazon-clone-gamma-ashen.vercel.app amazon-clone-gamma-ashen.vercel.app 25 amazon-clone-plum-eight.vercel.app amazon-clone-plum-eight.vercel.app 25 amazon-clone-psi-eight.vercel.app amazon-clone-psi-eight.vercel.app 25 amazon-clone-steel-two.vercel.app amazon-clone-steel-two.vercel.app 25 amazon-clone-xi-eight.vercel.app amazon-clone-xi-eight.vercel.app 25 temu.xyscsz.vip temu.xyscsz.vip 25

About This Report: sam-string.github.io

This report presents the latest stored evidence available to PhishDestroy. Source timestamps are shown where available; availability and vendor verdicts can change after collection.

The site displays a page titled “Site not found · GitHub Pages”, which may be designed to impersonate Amazon.

sam-string.github.io has been flagged by 6 security vendors as of August 1, 2026.

यदि आपको लगता है कि यह सूची गलत है, तो आप अपील जमा करेंहमारी कार्यप्रणाली के बारे में अधिक जानकारी के लिए, हमारे अक्सर पूछे जाने वाले प्रश्न पृष्ठ.

किसी भी डोमेन की जाँच करें

Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

Report

सीधा खतरा फीड

Recent phishing reports and observed availability changes

Monitor

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें

पीड़ितों के लिए सिफारिशें और सलाह

एक अनुमानित $51 billion 2024 में अवैध क्रिप्टो वॉलेट्स में प्रवाहित हुआ (source). यदि आपने के साथ इंटरैक्ट किया था sam-string.github.io — अभी कार्रवाई करें।

मुझे तुरंत क्या करना चाहिए?
Urgent
  • टोकन अनुमोदन रद्द करें — use रद्द करें.कैश दुष्ट स्मार्ट कॉन्ट्रैक्ट्स को प्रदान की गई पहुँच हटाने के लिए
  • शेष निधि स्थानांतरित करें एक बिल्कुल नए वॉलेट में। समझौता किया गया वॉलेट अब सुरक्षित नहीं है।
  • सभी पासवर्ड बदलें — ईमेल, एक्सचेंज खाते, कुछ भी जो एक ही पासवर्ड साझा करता हो
  • 2FA सक्षम करें एक ऑथेंटिकेटर ऐप (एसएमएस नहीं) का उपयोग करें। एसएमएस-आधारित रिकवरी को अक्षम करें।
  • फ्रीज़ कार्ड्स यदि आपने फिशिंग साइट पर बैंकिंग विवरण दर्ज किए
मैं अपनी रिपोर्ट के लिए कौन सी जानकारी एकत्र करूँ?
एफबीआई दिशानिर्देश

के अनुसार FBI, सबसे महत्वपूर्ण विवरण लेनदेन डेटा हैं:

  • क्रिप्टोकरेंसी पते — ठग का बटुआ (जैसे, 0x5856...35985)
  • राशि और क्रिप्टो प्रकार — सटीक राशि (उदाहरण के लिए, 1.02345 ETH, 0.5 BTC, 500 USDT)
  • लेनदेन आईडी (हैश) — अनूठा ब्लॉकचेन लेनदेन पहचानकर्ता
  • सटीक तिथियाँ और समय — प्रत्येक लेनदेन और ठग के साथ पहली बातचीत का
  • Screenshots — घोटाला वेबसाइट, चैट संदेश, ईमेल, वॉलेट लेनदेन, सोशल मीडिया
  • सभी यूआरएल और डोमेन धोखेबाज़ द्वारा उपयोग किया गया (सहित sam-string.github.io)
  • Communications — ईमेल, टेक्स्ट संदेश, फोन नंबर, उपयोगकर्ता नाम जिनका उपयोग ठग ने किया

भले ही आपके पास सभी विवरण न हों — फिर भी रिपोर्ट दर्ज करें. आंशिक जानकारी अभी भी जांच में मदद करती है।

मुझे इस घोटाले की रिपोर्ट कहाँ करनी चाहिए?
  • एफबीआई आईसी3 — इंटरनेट अपराध शिकायत केंद्र (अमेरिकी संघीय रिपोर्टिंग)
  • Europol — यूरोपीय साइबर अपराध रिपोर्टिंग (ईयू)
  • चेनअब्यूज़ — एक्सचेंजों और प्लेटफार्मों पर स्कैम वॉलेट्स को चिह्नित करें
  • आपका क्रिप्टो एक्सचेंज — स्कैमर का पता फ्रीज करने के लिए Coinbase/Binance/Kraken सपोर्ट से संपर्क करें।
  • स्थानीय पुलिस — एक आधिकारिक रिकॉर्ड बनाता है, भले ही वे तुरंत कार्रवाई न कर सकें

एफबीआई ने बरामद किया 1 अरब डॉलर से अधिक पीड़ितों की रिपोर्टों की बदौलत 2024 में क्रिप्टो धोखाधड़ी में। आपकी रिपोर्ट मायने रखती है।

क्रिप्टो घोटाले आमतौर पर कैसे काम करते हैं?
  • नकली वेबसाइटें — थोड़े बदले हुए डोमेन के साथ वैध साइटों के पिक्सेल-परफेक्ट क्लोन
  • दुर्भावनापूर्ण अनुमोदन — "कनेक्ट वॉलेट" प्रॉम्प्ट्स जो हमलावरों को असीमित टोकन खर्च करने की अनुमति देते हैं
  • सूअर का वध — टेलीग्राम/व्हाट्सएप/डेटिंग ऐप्स के माध्यम से हफ्तों में बनाया गया भरोसा, फिर पैसे चोरी
  • रिकवरी घोटाले — नकली "रिकवरी एजेंट्स" द्वारा अग्रिम शुल्क की मांग कर पीड़ितों को फिर से निशाना बनाया जा रहा है। हमेशा एक घोटाला
  • नकली विज्ञापन और एयरड्रॉप — गूगल/सोशल मीडिया विज्ञापन और "मुफ्त टोकन" के ऑफ़र जो वॉलेट खाली कर देते हैं
  • एआई-संचालित धोखाधड़ियाँ — डीपफेक, स्वचालित फ़िशिंग, और एआई-जनित साइटें धोखाधड़ी का पता लगाना कठिन बना रही हैं
मैं भविष्य में खुद को कैसे सुरक्षित रख सकता हूँ?
  • हार्डवेयर वॉलेट का उपयोग करें (लेजर, ट्रेजर)। ब्राउज़र वॉलेट्स में कभी भी बड़ी मात्रा में धन न रखें।
  • आधिकारिक साइटों को बुकमार्क करें — ईमेल, डीएम, या विज्ञापनों में दिए गए लिंक पर कभी क्लिक न करें
  • हर स्वीकृति पढ़ें — हस्ताक्षर करने से पहले अनुमतियों की पुष्टि करें। असीमित अनुमोदनों को अस्वीकार करें।
  • डोमेन सत्यापित करें — की जाँच करें फिश नष्ट करो संवाद करने से पहले HTTPS, वर्तनी, डोमेन की आयु की जाँच करें।
  • "सच होने के लिए बहुत अच्छा" = घोटाला — गारंटीशुदा रिटर्न, सेलिब्रिटी समर्थन, तत्काल समय-सीमाएँ
क्रिप्टो घोटाले की समस्या कितनी बड़ी है?
  • $51 billion 2024 में अवैध क्रिप्टो वॉलेट्स में प्रवाहित हुआ — कॉइनलेजर
  • सूअर का वध नुकसान साल-दर-साल 40% बढ़ा, अब यह सबसे तेजी से बढ़ने वाला धोखाधड़ी का प्रकार है।
  • केवल ~5% पीड़ित रिपोर्ट करते हैं — आपकी रिपोर्ट आपराधिक नेटवर्क को बंद करने में मदद करती है
  • एफबीआई ने 1 अरब डॉलर से अधिक बरामद किए 2024 में पीड़ितों की रिपोर्टों की बदौलत — एफबीआई.gov

स्रोत: FBI · कॉइनलेजर · वर्ल्डमेट्रिक्स

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।