gaganvaishnav208[.]github[.]io
“Amazon”
已存储的观测记录
观测到的标题差异
证据摘要
This domain, gaganvaishnav208.github.io, is a dangerous phishing site designed to trick you into handing over your login credentials. It impersonates the legitimate GitHub platform, likely presenting a fake login page that captures your username and password when you attempt to sign in. Once obtained, attackers can use your credentials to access your repositories, personal data, and potentially compromise other accounts if you reuse passwords. This is a classic example of a generic phishing threat, where the attacker's goal is to steal your identity or gain unauthorized access to your digital assets.
PhishDestroy identified this threat through multiple sources. VirusTotal, a widely used malware analysis service, shows that 13 out of 95 security vendors flag this domain as malicious—a clear indication of its dangerous nature. The domain was registered through GitHub, Inc., which is a legitimate registrar but often abused for hosting phishing pages. It is currently active and resolves to the IP address 185.199.108.153, which falls within GitHub's range. The site uses a valid SSL certificate from Let's Encrypt, making the fake login page appear more trustworthy at first glance. Additionally, it appears on one security blocklist, further confirming its malicious intent.
If you have visited this site, do not enter any information. If you already typed in your GitHub credentials, change your password immediately and enable two-factor authentication. Also, revoke any OAuth tokens that may have been granted. Run a full antivirus scan on your device to check for any malware that might have been downloaded. Finally, report the phishing page to GitHub's security team so they can take it down. Remember to always verify URLs before logging in, and use PhishDestroy's tools to check suspicious links before interacting with them.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月10日
技术
识别出 3 项高置信度技术
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控