heritagetimileyin85-cloud[.]github[.]io
heritagetimileyin85-cloud.github.io 网络钓鱼与安全检查
“Netflix Cloning”
heritagetimileyin85-cloud.github.io — 内容不可用 (HTTP 404). 品牌冒充:Netflix; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 14/91 (Criminal IP, alphaMountain.ai, BitDefender, Emsisoft, Fortinet); Google Safe Browsing flagged; PhishDestroy score 92/100. 注册商: GitHub.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain is flagged as a high-risk credential theft operation specifically targeting Netflix users. Analysis indicates the infrastructure is designed to impersonate Netflix login interfaces, tricking victims into submitting account credentials, payment details, or personal information. The threat type is classified as brand impersonation with credential harvesting capabilities, not generic phishing, due to its focused targeting of a major streaming platform. Infrastructure analysis reveals multiple technical indicators of malicious activity. The domain heritagetimileyin85-cloud.github.io is hosted on GitHub Pages infrastructure, resolving to IP address 185.199.109.153. Security vendors have flagged the domain in 17 out of 95 VirusTotal scans, while Gridinsoft assigns it a trust score of 0/100. The domain appears on one security blocklist and is actively blocked by PhishDestroy. The SSL certificate is issued by Let's Encrypt, which while legitimate, is commonly exploited by threat actors to lend false credibility to malicious sites. The page title explicitly states 'Netflix Cloning,' providing concrete evidence of its impersonation intent. Users and organizations should implement immediate mitigation measures to counter this credential theft threat. All access to heritagetimileyin85-cloud.github.io should be blocked at the network level, including DNS filtering and firewall rules. Security teams should monitor for any attempts to access this domain from corporate or personal devices, as such activity may indicate compromised accounts. Netflix users should be advised to verify website authenticity by checking for the official netflix.com domain in the URL bar and looking for the padlock icon indicating a valid SSL certificate. Any credentials entered on this domain should be considered compromised and reset immediately through Netflix's official password recovery process. Multi-factor authentication should be enabled for all streaming accounts to provide an additional layer of protection against credential theft.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of heritagetimileyin85-cloud.github.io · checked Jun 26, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。