anmolnegi09[.]github[.]io
“Netflix-Clone”
Observação armazenada
Contraste de títulos observado
Resumo das evidências
This domain, anmolnegi09.github.io, is flagged as a high-risk generic phishing site targeting user credentials. Analysis indicates the absence of any legitimate brand association, suggesting a broad-spectrum credential harvesting campaign. The infrastructure is hosted on GitHub Pages, a common tactic to exploit free hosting services for malicious purposes. No specific drainer kit signatures have been identified, but the domain exhibits characteristics consistent with automated phishing frameworks designed to capture login details, payment information, or other sensitive data. Infrastructure analysis reveals the following technical indicators: the domain is registered through GitHub, Inc., and resolves to the IP address 185.199.108.153, a known GitHub Pages hosting endpoint. The SSL certificate is issued by Let's Encrypt, providing a veneer of legitimacy while facilitating encrypted connections to deceive targets. VirusTotal detection metrics show 6 out of 95 security vendors flagging the domain as malicious. No Google Safe Browsing (GSB) listing or additional blocklist entries were observed at the time of analysis, though this may reflect a lag in propagation rather than a clean status. Creation date metadata is obscured due to the domain being a GitHub Pages subdomain, limiting historical tracking. The domain remains active as of the latest verification, posing an ongoing threat to users who may encounter it through phishing emails, social engineering, or malvertising vectors. Response actions should include immediate blacklisting of the domain across enterprise security controls, including web gateways, email filters, and endpoint protection systems. Network-level blocking of the IP address 185.199.108.153 is recommended, though caution must be exercised to avoid disrupting legitimate GitHub Pages traffic. Users are advised to verify the authenticity of any login prompts originating from this domain and report suspicious activity to their security teams. The remaining risk is classified as high due to the domain's active status, lack of takedown, and potential for credential compromise.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 10/08/2026
10 fontes externas monitoradas Sem correspondência
Tecnologias
3 tecnologias identificadas com alta confiança
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of anmolnegi09.github.io · checked Jun 26, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo