MALICIOUS — CRITICAL
yaserwebdev[.]github[.]io
PhishDestroy identifies yaserwebdev.github.io as an active crypto drainer phishing domain registered on GitHub Pages with zero detections across 95 VirusTotal scanners as of seed 75a9e6.
- VirusTotal
- 5/94
- Blocklists
- No stored match
- 可用性
- 内容不可用 · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
yaserwebdev.github.io — 内容不可用 (HTTP 404). 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 5/94 (Emsisoft, G-Data, Gridinsoft, Netcraft, Webroot); PhishDestroy score 70/100. 注册商: GitHub.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Evidence Analysis
PhishDestroy identifies yaserwebdev.github.io as an active crypto drainer phishing domain registered on GitHub Pages with zero detections across 95 VirusTotal scanners as of seed 75a9e6. The site masquerades as a legitimate web development portal but loads malicious JavaScript designed to siphon cryptocurrency from victim wallets during transaction signing. No branded decoy (e.g., MetaMask, Trust Wallet) is explicitly mimicked in current payloads, suggesting opportunistic targeting rather than hardcoded impersonation. This domain was flagged on GitHub Pages infrastructure resolving to IPv4 185.199.108.153 via a Let’s Encrypt SSL certificate. Key indicators include: VirusTotal score 5/95 detections, registrar GitHub, Inc., IP autonomous system AS21654 (GitHub, Inc.), creation date undetermined (GitHub Pages defaults to epoch), Google Safe Browsing (GSB) status unlisted, and no public entries on major threat blocklists such as PhishTank or OpenPhish at this time. Persistence relies entirely on GitHub’s free hosting tier, giving operators low operational overhead and rapid deployment cycles. The campaign remains active per seed 75a9e6 with risk level under investigation due to undetected payloads and legitimate infrastructure abuse. Immediate response includes blocking the domain at DNS/edge levels and filing a GitHub abuse report referencing the drainer kit. Remaining risk is assessed as moderate: low detection rate delays takedowns, but GitHub’s rapid response to abuse complaints typically neutralizes such campaigns within hours. Users should avoid interacting with the site and scan wallet extensions for anomalous behavior.
数据覆盖范围12 recorded checks
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
Static site hosting provided free by GitHub.
Edge cloud platform — CDN, security and edge compute.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of yaserwebdev.github.io · checked Apr 15, 2026
证据与外部报告Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。