suravisahu05-prog[.]github[.]io
suravisahu05-prog.github.io 피싱 및 보안 점검
“Amazon”
suravisahu05-prog.github.io — 콘텐츠를 사용할 수 없음 (HTTP 404). 브랜드 사칭: Google; 사기 유형: Brand Impersonation. 증거 요약: VT 7/91 (alphaMountain.ai, Emsisoft, G-Data, Google Safebrowsing, Gridinsoft); URLScan malicious; GSB flagged; BL 0; PD 85/100. 등록기관: GitHub.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
PhishDestroy first observed suravisahu05-prog.github.io on Jun 21, 2026. Positive findings were recorded by VirusTotal, Google Safe Browsing, and URLScan. Evidence score: 85/100.
VirusTotal recorded 7 detections among 91 engines: alphaMountain.ai, Emsisoft, G-Data, Google Safebrowsing, Gridinsoft, Netcraft, Webroot on Jul 18, 2026 at 20:45 UTC. Google Safe Browsing flagged the domain: Social Engineering on Jun 21, 2026 at 12:20 UTC. URLScan returned a malicious verdict with score 100 on Jun 24, 2026 at 08:12 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 14:20 UTC.
HTTP 404 was recorded on Aug 7, 2026 at 01:06 UTC; content was unavailable. Registration records list GitHub, Inc. as the registrar and May 16, 2026 as the registration date. At collection time, the domain resolved to 185.199.108.153. Collected metadata identifies Google as the apparent target. Captured page title: “Amazon”. PhishDestroy classified the observed content as Brand Impersonation. DOM analysis completed on Jun 21, 2026 at 14:20 UTC; stored DOM score 0/100. IoC extraction completed on Jul 29, 2026 at 02:52 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis2026년 6월 25일
This domain, suravisahu05-prog.github.io, is actively engaged in brand impersonation targeting Google users. Analysis indicates the site presents a fraudulent Google login interface designed to harvest user credentials, classified as a high-risk threat due to its active status and confirmed malicious intent. The page title, however, displays 'Amazon,' suggesting potential obfuscation or dual-purpose exploitation tactics. Infrastructure analysis reveals the domain is hosted on GitHub Pages, resolving to the IP address 185.199.108.153, located within the United States under AS54113 (Fastly, Inc.). The domain is flagged by 7 out of 95 security vendors on VirusTotal, with Google Safe Browsing explicitly categorizing it as a phishing threat. It appears on one security blocklist and is currently blocked by at least one threat intelligence feed. The SSL certificate is issued by Let's Encrypt (R12), a common but not exclusive indicator of legitimate domains, which may be leveraged to evade basic security checks. As of the latest verification, suravisahu05-prog.github.io remains active and continues to pose a significant risk to users. Organizations and individuals are advised to implement immediate blocking of the domain and its associated IP address (185.199.108.153) at the network perimeter. Endpoint protection systems should be updated to include this domain in their deny lists, and users should be educated on recognizing brand impersonation tactics, particularly those mimicking Google authentication pages. Monitoring for credential reuse or unauthorized access attempts linked to this domain is strongly recommended.
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com 신뢰도 100%VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.