sonny2k[.]github[.]io
Перевірка домену sonny2k.github.io на фішинг і безпеку
“Facebook - Log In or Sign Up”
sonny2k.github.io — Останній відомий активний (HTTP 200). Уособлення бренду: Facebook; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Emsisoft); URLQuery 3 alerts; CF Radar malicious; PhishDestroy score 100/100. Реєстратор: GitHub.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies sonny2k.github.io as an active crypto-draining fraud site hosted on GitHub Pages. This domain mimics legitimate services to trick users into connecting crypto wallets and authorizing malicious token transfers that silently drain funds. The threat is elevated due to the live domain, Let’s Encrypt certificate, and confirmed detections by 16 of 95 VirusTotal security engines. The IP 185.199.108.153 is a known GitHub Pages frontend, but attackers abuse the free hosting to serve phishing payloads while leveraging GitHub’s trustworthiness to bypass initial scrutiny. This domain was flagged by 16 out of 95 VirusTotal security vendors, indicating widespread suspicion yet ongoing availability. Registered through GitHub, Inc., the site uses a Let’s Encrypt SSL certificate to appear legitimate, and resolves to GitHub’s infrastructure at 185.199.108.153. Despite GitHub’s legitimate platform being abused, the domain was specifically created for malicious redirection and should not be trusted. If you visited sonny2k.github.io, immediately disconnect your wallet and revoke any unauthorized token approvals via your wallet’s “Revoke” or “Disconnect” functions. Do not interact further with the site. Scan your device with updated antivirus software and consider rotating wallet credentials. Report the domain to GitHub abuse and your wallet provider to help block follow-on attacks.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | sonny2k.github.io |
malicious | Sinkholed |
| OpenDNS | sonny2k.github.io |
phishing | Phishing Block |
| DNS4EU | sonny2k.github.io |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіFastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of sonny2k.github.io · checked Apr 24, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога