shahzebjan45[.]github[.]io
“Site not found · GitHub Pages”
Riepilogo delle prove
PhishDestroy identifies shahzebjan45.github.io as a live, elevated-risk phishing asset currently leveraging GitHub Pages to host fake login prompts. The domain masquerades as a legitimate service to harvest user credentials, making it a direct threat to authentication integrity. Based on telemetry, this site triggers 17 out of 95 security vendors, confirming its malicious classification. It resolves to AS208475 via IP 185.199.108.153 and operates under a Let’s Encrypt SSL certificate. Registered through GitHub, Inc., the page exploits trust in the GitHub domain while hosting deceptive content. Despite its innocuous appearance, the combination of flagged detections and live status underscores its elevated risk to end users seeking to authenticate online.
Technical indicators reveal a lightweight footprint: the domain lacks historical depth, pointing to a recently deployed lure. The SSL certificate, issued by Let’s Encrypt, enhances the page’s credibility by disguising malicious intent under a green padlock. Network analysis routes traffic through Fastly’s infrastructure (AS208475) – a legitimate CDN commonly abused to host short-lived phishing pages. With 17 vendors flagging it and no presence on major blocklists at time of detection, shahzebjan45.github.io represents a stealthy, evasive threat. The absence of long-term registration details suggests a disposable asset, rapidly deployed for credential harvesting campaigns across multiple verticals.
Mitigation requires immediate network and user-level actions. Block the domain and its resolving IP (185.199.108.153) at perimeter defenses using DNS sinkholing and firewall rules. Flag any outbound traffic to this domain for investigation due to its confirmed malicious intent. Since it hosts a fake login portal, enforce multi-factor authentication (MFA) to reduce the impact of potential credential theft. Warn users to verify URLs via hover-over checks and avoid entering credentials on untrusted sites, especially those hosted on free domains like GitHub Pages. For SOC teams, ingest this IOC into SIEM dashboards and update threat intelligence feeds to preempt similar lures. Act now to prevent credential compromise and data exfiltration.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 10/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of shahzebjan45.github.io · checked Mar 26, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo