pranavswaroopvarma[.]github[.]io
Перевірка домену pranavswaroopvarma.github.io на фішинг і безпеку
“Site not found · GitHub Pages”
pranavswaroopvarma.github.io — Контент недоступний (HTTP 404). Уособлення бренду: Netflix; Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 15/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 100/100. Реєстратор: GitHub.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies the domain pranavswaroopvarma.github.io as an active crypto drainer phishing host engaged in credential theft and wallet draining operations. The site masquerades under a legitimate GitHub Pages subdomain while deploying malicious scripts designed to exfiltrate private keys, mnemonic phrases, or seed phrases from unsuspecting cryptocurrency users. No specific brand impersonation was detected in the available intelligence, suggesting a standalone phishing campaign targeting individual users rather than a corporate entity. The infrastructure appears optimized for rapid deployment and evasion, with a lightweight landing page likely serving as a gateway to a malicious drainer kit hosted on the same server or via linked external domains.
Technical analysis reveals this domain resolves to IP 185.199.108.153 and is registered through GitHub, Inc., leveraging the trusted GitHub Pages service to lend false legitimacy. Security vendor detection stands at 15 out of 95 on VirusTotal, indicating moderate but not universal recognition of the threat. The domain holds a valid SSL certificate issued by Let's Encrypt, which may help bypass browser warnings. While the exact creation date is not provided, the active status and fresh detection patterns suggest recent deployment. The domain has not been listed on Google Safe Browsing (GSB) as of this report, and blocklist counts remain unverified in public feeds. These factors combine to create an elevated risk profile, particularly for users interacting with crypto platforms or visiting finance-related content.
As of current assessment, the domain remains active and poses an ongoing threat to cryptocurrency users. Immediate actions include blocking the domain and IP at the network perimeter, updating endpoint protection rules, and warning end users to avoid visiting the site or interacting with any associated content. The risk level remains elevated due to the domain's use of a reputable hosting platform, valid SSL, and partial detection coverage. Users should verify all crypto-related domains via official channels and never enter seed phrases or private keys on untrusted pages. While GitHub has been notified previously in similar cases, proactive monitoring and user education are critical to mitigate further compromise. Remaining risk includes potential evolution into brand impersonation or expansion via subdomains, warranting continuous threat intelligence review.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | pranavswaroopvarma.github.io |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Static site hosting provided free by GitHub.
Edge cloud platform — CDN, security and edge compute.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of pranavswaroopvarma.github.io · checked Apr 16, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога