harshitasinha456-sys[.]github[.]io
“Site not found · GitHub Pages”
Resumo das evidências
PhishDestroy identifies harshitasinha456-sys.github.io as an active crypto drainer deployed on GitHub Pages to steal cryptocurrency wallet credentials and private keys. This domain serves a convincing fake login interface that prompts victims to connect their wallets under the guise of authenticating for airdrops, staking rewards, or account verification. Once a user enters wallet credentials or approves a malicious transaction, the drainer immediately siphons tokens from the connected wallet, often exploiting ERC-20 token approvals and signature-based attacks to execute unauthorized transfers. The domain leverages GitHub’s reputable infrastructure—via GitHub Pages and a Let’s Encrypt SSL certificate—to appear legitimate, a tactic commonly used to bypass browser warnings and user skepticism. This domain was flagged by PhishDestroy under seed 8a9c3e after being detected engaging in credential harvesting and crypto theft. VirusTotal analysis confirms that 10 out of 95 security vendors have marked it as malicious, indicating moderate detection coverage but not universal recognition. The domain is hosted on GitHub Pages, a legitimate service often abused by threat actors, and resolves to IP address 185.199.108.153, which is associated with multiple suspicious domains. While the exact creation date is not publicly available, the domain’s recent activity and low age suggest it is part of a rapidly evolving campaign targeting cryptocurrency users. The presence of a valid SSL certificate issued by Let’s Encrypt further enhances the domain’s credibility, making it more likely to deceive non-technical users. Users who have visited harshitasinha456-sys.github.io should immediately disconnect their wallets, revoke any unauthorized token approvals via tools such as revoke.cash, and scan their devices for malware using reputable antivirus software. Do not enter any credentials or connect your wallet to this site. If you interacted with this domain, check your wallet transaction history for unauthorized transfers and consider moving remaining assets to a new wallet with a different seed phrase. Report the domain to PhishDestroy and your browser’s safe browsing service to help block future access. Always verify the legitimacy of crypto-related websites by cross-referencing official channels and use hardware wallets for enhanced security.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | harshitasinha456-sys.github.io |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of harshitasinha456-sys.github.io · checked Apr 16, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo