tchiinhemba-frontend-projects[.]github[.]io
“Site not found · GitHub Pages”
证据摘要
This domain, tchiinhemba-frontend-projects.github.io, is flagged as a high-risk credential harvesting site leveraging GitHub Pages infrastructure. Analysis indicates the threat type is generic phishing, specifically designed to mimic legitimate login portals to capture user credentials, session tokens, or other sensitive authentication data. While no specific brand impersonation or drainer kit signatures have been confirmed, the domain's structure and hosting pattern align with known phishing campaigns exploiting free hosting services to evade detection and reduce operational costs. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 185.199.108.153, hosted in the United States under GitHub, Inc. The SSL certificate is issued by Let's Encrypt (R12), a common choice for both legitimate and malicious sites. The domain was registered on April 21, 2026, through GitHub, Inc., with an anomalous future creation date suggesting potential domain spoofing or registry manipulation. VirusTotal detection shows 13 out of 95 security vendors flagging the domain as malicious, while it appears on one security blocklist. The page currently displays a 'Site not found' message, which may indicate a temporary takedown, cloaking mechanism, or staging phase before full deployment. Current status remains active, with the domain still resolving and no confirmed suspension by the hosting provider. The anomalous creation date and GitHub Pages hosting are notable red flags, as threat actors frequently abuse free hosting services to launch phishing campaigns with minimal overhead. While the 'Site not found' page reduces immediate exposure, the domain retains potential for reactivation. Users and organizations are advised to block resolution at the DNS or network level, monitor for changes in page content, and implement multi-factor authentication to mitigate credential theft risks. The remaining risk is classified as high due to the domain's active status, detection by multiple security vendors, and the persistent threat of credential harvesting attacks.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | tchiinhemba-frontend-projects.github.io |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
技术
识别出 3 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of tchiinhemba-frontend-projects.github.io · checked Apr 21, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控