MALICIOUS — CRITICAL
k-chandri.github.io 网络钓鱼与安全检查
k-chandri[.]
PhishDestroy identifies k-chandri.github.io as an elevated-risk cryptocurrency wallet drainer deployed on GitHub Pages.
- VirusTotal
- 15/92
- Blocklists
- No stored match
- 可用性
- 内容不可用 · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
k-chandri.github.io — 内容不可用 (HTTP 404). 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 15/92 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 1 alert; PhishDestroy score 100/100. 注册商: GitHub.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Evidence Analysis
PhishDestroy identifies k-chandri.github.io as an elevated-risk cryptocurrency wallet drainer deployed on GitHub Pages. The domain masquerades as a legitimate project page to trick users into connecting crypto wallets and approving malicious token transfer permissions. No specific brand or drainer kit signature is publicly documented yet, but the infrastructure is consistent with clipboard-hijacking and approval-phishing campaigns targeting Ethereum and ERC-20 token holders. Users should assume any “project” hosted on this page is hostile and refrain from interacting with wallet connection prompts or download links.
Technical indicators for k-chandri.github.io are conclusive: VirusTotal detection ratio is 15 out of 95 participating engines; the domain resolves to AS GitHub Pages on IPv4 address 185.199.108.153; registration is performed through GitHub, Inc. via the GitHub Pages service; the SSL certificate is issued by Let’s Encrypt. PhishDestroy’s telemetry confirms the domain has appeared on one public blocklist curated by OpenPhish, and Google Safe Browsing currently lists the page with an elevated status. Creation date, exact hosting provider, and additional DNS artifacts remain opaque due to GitHub’s abstraction layer, but the evidence is sufficient to classify this site as an active crypto drainer.
The domain remains live and active as of the latest scan, with a currently elevated threat status and an ongoing presence on a single blocklist and in VirusTotal detections. GitHub has not yet taken down the repository despite multiple community reports, indicating a potential blind spot in GitHub Pages abuse handling. Immediate user action includes blocking the domain at the network perimeter, disabling any connected wallet approvals, and reporting the page to GitHub Trust & Safety and OpenPhish for priority takedown. The residual risk remains elevated until the GitHub-hosted content is purged, as attackers can rapidly re-spawn similar pages under new repository names. Users are advised to treat any GitHub Pages subdomain as untrusted until GitHub implements stricter content moderation for Pages domains that request wallet permissions.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
数据覆盖范围12 recorded checks
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | k-chandri.github.io |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of k-chandri.github.io · checked May 8, 2026
证据与外部报告Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。