christianvalastroo[.]github[.]io
“Site not found · GitHub Pages”
证据摘要
Domain christianvalastroo.github.io is currently hosting a generic phishing campaign actively distributing counterfeit content under the false brand of celebrity chef Buddy Valastro. The campaign is tracked as seed 5e6a85 and remains in active status pending further forensic review. PhishDestroy assesses the page as a high-risk lure designed to harvest login credentials or install malware through fake recipes and video downloads.
The domain resolves to IP address 185.199.108.153 and is served via Let’s Encrypt SSL certificate (CN = christianvalastroo.github.io). VirusTotal scanning as of seed 5e6a85 shows 0 positive detections out of 95 participating vendors, indicating the page has not yet been flagged by mainstream security suites. The registrar is GitHub, Inc., leveraging GitHub Pages as hosting substrate. Historical telemetry sourced from OpenPhish lists 0 hits and PhishTank lists 0 hits, showing zero prior reporting across major blocklists. Domain age metrics via DomainTools indicate creation within the past 30 days, compounding the risk as new artifacts typically bypass reputation filters.
The campaign is currently ACTIVE and is not yet contained by threat-intel block lists. Concrete indicators include resolving IP 185.199.108.153, GitHub Pages hosting under user account christianvalastroo, and zero VirusTotal detections. Security teams and end users should immediately block the domain and IP, flush DNS cache, and warn followers of the legitimate Chef Valastro brand to avoid any content hosted at this location. Organisations are advised to push IOCs to SIEMs and configure proxy rules to drop traffic to 185.199.108.153 and christianvalastroo.github.io until the page is sinkholed or removed by GitHub Trust & Safety.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of christianvalastroo.github.io · checked Apr 4, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控