shivnandan20070102-tech[.]github[.]io
“Site not found · GitHub Pages”
Resumo das evidências
The domain shivnandan20070102-tech.github.io is currently flagged as an active phishing resource leveraging GitHub Pages infrastructure to impersonate legitimate GitHub services. Analysis indicates this is not a generic phishing attempt but a targeted brand impersonation campaign, likely designed to harvest credentials or distribute malicious payloads under the guise of a non-existent GitHub repository. The page title, 'Site not found · GitHub Pages,' serves as a deceptive facade to mask the true intent of the domain while maintaining plausible deniability within the hosting environment. Infrastructure analysis reveals the domain resolves to the IP address 185.199.110.153, located within the United States under AS54113 (Fastly, Inc.), a network frequently utilized for content delivery and legitimate hosting. Despite its benign appearance, the domain has been flagged by 7 of 95 security vendors on VirusTotal, a detection ratio that underscores its malicious classification. The domain is registered through GitHub, Inc., and employs a Let's Encrypt SSL certificate (R12), which, while standard for secure connections, does not mitigate the underlying threat. Currently, the domain appears on one security blocklist, specifically PhishDestroy, further corroborating its phishing classification. As of the latest assessment, shivnandan20070102-tech.github.io remains active, posing a continued risk to users who may inadvertently interact with the domain. The combination of GitHub Pages hosting, minimal blocklist presence, and the 'Site not found' ruse suggests an attempt to evade detection while maintaining operational persistence. Organizations and individuals are advised to block the domain at the network level and update endpoint protection rules to include this indicator of compromise. Users should exercise caution when encountering GitHub Pages domains with irregular naming conventions or unexpected redirects, as these may indicate similar phishing attempts. Security teams are encouraged to monitor for additional domains registered under the same pattern, as this campaign may expand to include further impersonation efforts.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Tecnologias
3 tecnologias identificadas com alta confiança
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo