mehakrathoure[.]github[.]io
Pemeriksaan phishing dan keamanan mehakrathoure.github.io
“Site not found · GitHub Pages”
mehakrathoure.github.io — Konten tidak tersedia (HTTP 404). Jenis penipuan: Crypto Drainer. Ringkasan bukti: VirusTotal 10/94 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, Emsisoft); URLQuery 1 alert; PhishDestroy score 85/100. Registrar: GitHub.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
PhishDestroy identifies mehakrathoure.github.io, a GitHub Pages domain, hosting a generic crypto drainer kit masquerading as a legitimate service. This domain was flagged as an elevated-risk threat due to its active role in draining cryptocurrency wallet funds via deceptive web interfaces designed to trick users into authorizing fraudulent transactions. The payload appears to be a simple but effective drainer script that prompts wallet connections and initiates unauthorized transfers once permissions are granted. GitHub Pages is a legitimate hosting platform, but threat actors frequently abuse it to serve malicious scripts under the guise of benign projects, leveraging the platform’s trustworthiness to evade detection.
Technical indicators confirm this domain’s malicious nature. mehakrathoure.github.io resolves to IP address 185.199.108.153 and is registered through GitHub, Inc., utilizing a Let's Encrypt SSL certificate to appear legitimate. VirusTotal analysis shows 5 out of 95 security vendors flagged this domain as malicious. The domain is hosted on GitHub’s infrastructure, which may complicate takedown efforts due to platform policies and abuse-handling mechanisms. Additional forensic analysis indicates active hosting with no known blocklist presence as of the latest scan, though this may change as intelligence is updated. The combination of a high-reputation host, low detection rate, and immediate operational status suggests a recently deployed or stealthily maintained threat.
As of the latest assessment, mehakrathoure.github.io remains active and poses an elevated risk to cryptocurrency users. No takedown actions have been publicly confirmed, and the domain continues to serve the drainer payload. Users are advised to block this domain at the network level and avoid interacting with any website hosted on this subdomain. Security teams should monitor for related wallet drainer signatures and update firewall rules to prevent outbound connections to 185.199.108.153. While GitHub has mechanisms to address abuse, the transient nature of such campaigns means proactive blocking and user education remain the most effective defenses against this evolving threat. Remaining risk is elevated due to ongoing availability and the potential for rapid lateral movement to new subdomains or related domains.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | mehakrathoure.github.io |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 3 identified
Static site hosting provided free by GitHub.
Edge cloud platform — CDN, security and edge compute.
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of mehakrathoure.github.io · checked Apr 19, 2026
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive