harshu639[.]github[.]io
“Site not found · GitHub Pages”
证据摘要
This domain, harshu639.github.io, is identified as an active credential theft operation. Analysis indicates the infrastructure is designed to harvest usernames, passwords, and session tokens through deceptive login portals or cloned authentication pages. The threat leverages legitimate hosting services to evade initial detection, making it particularly effective against users who may not scrutinize the domain closely. Evidence supporting this assessment includes detection by 12 out of 95 security vendors on VirusTotal, with the domain appearing on one security blocklist. The SSL certificate is issued by Let's Encrypt (R12), and the domain resolves to the IP address 185.199.110.153, which is associated with GitHub, Inc. in the United States. Despite the page title displaying 'Site not found · GitHub Pages,' the domain was created on April 15, 2026, and remains active, suggesting it may serve malicious content intermittently or redirect to other compromised endpoints. Users who have visited harshu639.github.io should immediately revoke any active sessions associated with the site, reset passwords for accounts accessed during the visit, and enable multi-factor authentication where available. Monitor financial and email accounts for unauthorized activity, as stolen credentials may be exploited across multiple platforms. If login credentials were entered, assume they are compromised and avoid reusing them on other services. Network administrators should block the domain and its resolving IP address to prevent further exposure within their environments.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | harshu639.github.io |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of harshu639.github.io · checked Apr 15, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控