Analysis of the domain 03191190026.github.io indicates that it is currently active and classified as a high‑risk generic phishing operation. The domain resolves to the IP address 185.199.110.153, which belongs to the GitHub Pages hosting service operated by GitHub, Inc. While GitHub provides legitimate content hosting, the same infrastructure is frequently abused to serve malicious phishing pages because it offers free SSL and a trusted certificate chain. The registration record shows that the domain was created through GitHub, Inc., and no traditional registrar or nameserver information is available (NS_NOT_FOUND).
VirusTotal reports that eight out of ninety‑one antivirus and URL scanning engines have flagged the domain, suggesting that a minority of security products have identified malicious characteristics. Independent reputation feeds have added the domain to two blocklists, and it is explicitly listed by PhishDestroy and OpenPhish as a known phishing location. No additional data such as Safe Browsing, OTX, SSL details, HTTP response codes, or page titles have been published for this address, leaving the exact content of the hosted page unverified.
Defenders should treat the domain as hostile: incorporate the fully qualified domain name into URL filtering policies, ensure that network perimeter devices block traffic to 185.199.110.153 when used for non‑GitHub traffic, and monitor for any outbound connections that may indicate compromised internal systems attempting to interact with the site. Continuous re‑evaluation is advised, as threat actors can modify the hosted content without altering the underlying infrastructure.