MALICIOUS — CRITICAL
emmanuelfasida25-lab.github.io – Credential Theft Phishing Alert
emmanuelfasida25-lab[.]
PhishDestroy identifies emmanuelfasida25-lab.github.io as an active credential theft phishing domain currently deployed against unsuspecting visitors.
- VirusTotal
- 14/92
- Blocklists
- No stored match
- Disponibilità
- Contenuto non disponibile · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
emmanuelfasida25-lab.github.io — Contenuto non disponibile (HTTP 404). Tipo di truffa: Generic Phishing. Riepilogo delle prove: VirusTotal 14/92 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 1 alert; PhishDestroy score 97/100. Registrar: GitHub.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
PhishDestroy identifies emmanuelfasida25-lab.github.io as an active credential theft phishing domain currently deployed against unsuspecting visitors. This GitHub-hosted page mimics a legitimate service page to harvest user login credentials, creating a direct risk to account safety and data confidentiality. The threat remains live and accessible at the time of analysis, enabling ongoing exploitation if unchecked.
This domain was flagged by 10 of 95 VirusTotal security vendors within hours of detection and resolved to IP address 185.199.109.153 via GitHub Pages’ infrastructure. The SSL certificate was issued by Let’s Encrypt, ensuring encrypted traffic that may disguise malicious intent from basic network inspection tools. No public creation date is exposed due to GitHub’s privacy protections, but traffic patterns and VirusTotal submissions indicate recent deployment consistent with a fast-moving credential harvesting campaign.
Current status remains active and elevated, meaning the phishing page continues to operate and may lure users into entering credentials under false pretenses. Security teams and individual users are advised to block the domain at network and endpoint levels using indicators such as DNS sinkholing to 185.199.109.153 and URL filtering rules targeting the full path emmanuelfasida25-lab.github.io. Additionally, GitHub should be notified via abuse report to expedite takedown, and users who may have interacted are urged to rotate passwords immediately and enable multi-factor authentication on all related accounts to prevent follow-on compromise.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | emmanuelfasida25-lab.github.io |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com Confidenza al 100%Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of emmanuelfasida25-lab.github.io · checked May 9, 2026
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.