bhaktighatage[.]github[.]io
Verifica phishing e sicurezza per bhaktighatage.github.io
“Amazon”
bhaktighatage.github.io — Contenuto non disponibile (HTTP 404). Simulazione del marchio: Amazon. Riepilogo delle prove: VirusTotal 10/91 (alphaMountain.ai, Certego, Emsisoft, Forcepoint ThreatSeeker, G-Data); URLScan malicious verdict; PhishDestroy score 80/100. Registrar: GitHub.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
This domain, bhaktighatage.github.io, is flagged as a generic phishing endpoint with no confirmed brand impersonation or associated drainer kit. Infrastructure analysis reveals the domain is hosted on GitHub Pages, a legitimate platform frequently abused for phishing due to its free hosting and trusted reputation. The absence of a specific brand target suggests opportunistic credential harvesting or malware distribution rather than targeted impersonation campaigns.
Technical indicators confirm the domain resolves to the IP address 185.199.108.153, a shared GitHub Pages server. VirusTotal detection metrics report 9 out of 95 security vendors flagging the domain as malicious, indicating moderate consensus on its phishing classification. The domain is registered through GitHub, Inc., with no creation date publicly disclosed, though GitHub Pages domains typically inherit the repository's creation timestamp. Google Safe Browsing (GSB) status is not explicitly listed, but the domain remains unblocked by major browser-based protections. Blocklist aggregation services report minimal inclusion, suggesting either recent deployment or evasion of automated detection systems.
As of the latest verification, bhaktighatage.github.io remains active and unresolved by GitHub's abuse team. No takedown requests or repository deletions have been observed, allowing the phishing infrastructure to persist. The remaining risk is classified as high due to the domain's operational status, detection by multiple security vendors, and potential for credential theft or payload delivery. Organizations are advised to block the domain at the perimeter, monitor for related GitHub Pages subdomains, and educate users on identifying phishing attempts leveraging legitimate hosting services. Continuous monitoring of GitHub Pages for similar abuse patterns is recommended to preempt further exploitation.
Copertura dei dati12 recorded checks
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com Confidenza al 100%Analisi di VirusTotal
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.