Is iitssme1987-bit.github.io legit or a scam?
A malicious GitHub-hosted phishing site flagged by 16 antivirus engines for credential harvesting and links to automated phishing bots.
These checks passed — but they don't clear the site. A clean antivirus result, valid SSL, and a calm server only mean it isn't hosting malware; they say nothing about whether the business is real. This verdict is based on the site's conduct and content, not a malware detection.
Analysis Summary
Critical risk detected
17 of 92 antivirus engines flag this page (16 outright malicious). Multiple independent checks — antivirus engines, browser safety blocklists, and threat databases — flagged this site. Don't enter personal information, deposit money, or download files.
Website Preview

Automated page render — captured in a safe sandbox. What an ordinary visitor would see when loading the site.
MT Intelligence
Our analysis confirms this site is a malicious phishing host. 16 major antivirus engines, including BitDefender, ESET, and Sophos, have flagged the domain as a threat. The page title is written in Russian and translates to 'Confirmation | Site Access,' a common tactic used to trick users into entering login details. Technical research identified a Telegram bot token within the site's code named 'phsihersbot_bot,' which is used to exfiltrate stolen data to the attackers. The domain is also explicitly listed on major browser-level phishing blocklists.
Web Research Findings
Our live research agent queries scam-report databases, consumer-review sites, news coverage, and general web search for iitssme1987-bit.github.io, then cross-checks business-registration records and look-alike domain patterns. Everything below is pulled from what it actually found.
- Domain created 0 days ago (as of scan).
- The path /mysite/ was flagged as malicious/phishing by Maltiverse with 'phishing' tag and classified as a Phishing URL.
- urlquery.net report labels it 'Suspicious' due to suspicious Javascript code, OpenPhish tag, DNS4EU sinkhole (malicious), and detection of Telegram Bot API token belonging to a bot named 'phsihersbot_bot' with first name 'phisher'.
- The page title observed was "Подтверждение | Доступ к сайту" (Russian for "Confirmation | Site Access").
- Domain is explicitly listed in AdGuard's official Phishing URL Blocklist.
- Shares IP infrastructure (185.199.109.153 / Fastly CDN) with multiple other flagged .github.io phishing/scam domains according to malwareurl.com listings.
- No legitimate business, reviews, or registration details found; consistent with disposable GitHub Pages phishing sites often used in crypto wallet-draining campaigns.
- urlquery.netopen
"iitssme1987-bit.github.io/mysite: suspicious (suspicious JS code); detections: urlquery(2), NID(1), TDS(2); openphish tag; malicious via DNS4EU/sinkhole & YARAhub (Telegram Bot API); bot: phsihersbot_bot (phisher)"
- Maltiverseopen
"https://iitssme1987-bit.github.io/mysite/ Classification: malicious. ... Phishing. This is a Phishing URL. Tags. phishing. ... Last online 2026-06-10"
- AdGuard PhishingURLBlocklistopen
"iitssme1987-bit.github.io is included in the security filter_30_PhishingURLBlocklist"
Antivirus Engines
Security Scans
Checked against the major public blocklists used by browsers and security tools — no hits.
Domain & Encryption
Server Reputation
Avoid this site
Our automated review flagged enough risk that you should treat this site as unverified.
- Do not interact with iitssme1987-bit.github.io
Do not enter credentials, deposit money, download files, or install browser extensions from this site.
- Verify the business through independent channels
Check the company's social profiles, registry records, and search for recent news or reviews that are not hosted on the site itself.
- Never use irreversible payment methods
Crypto, gift cards, wire transfers, and cash apps offer zero buyer protection. Use a credit card or PayPal if you must pay.
- OpenShare your experience
If you have additional context, drop a comment below or post on the MalwareTips forum.
Reputation Sources
How this domain rates across independent threat-intelligence and blocklist providers.
Safety FAQ
Common questions about this site, answered directly from the scan data above — so the answers always reflect the latest verdict on this page.
- Our automated security review flags iitssme1987-bit.github.io as dangerous. Multiple threat indicators were detected — treat the site as a scam until proven otherwise.
- No — iitssme1987-bit.github.io scored 1/100 on our trust scale. We detected active threat indicators, so we recommend avoiding the site entirely.
- Yes. iitssme1987-bit.github.io presents a valid TLSv1.3 certificate issued by Let's Encrypt · YR2, expiring in 68 days. Note that SSL only encrypts the connection — it does not guarantee that the site itself is trustworthy.
- iitssme1987-bit.github.io is 0 days old. Scam domains are often freshly registered — a site under 6 months old warrants extra caution.
- 17 out of 92 antivirus engines in our malware network flagged iitssme1987-bit.github.io as malicious or suspicious (16 outright malicious). Even one detection is a meaningful signal.
- No. iitssme1987-bit.github.io is not currently listed on the major browser blocklist feeds that modern browsers use.
- iitssme1987-bit.github.io resolves to an IP operated by GitHub, Inc. in US (usage type: Content Delivery Network). Hosting location alone doesn't make a site good or bad, but unusual geography for a brand's claimed country is one of many signals we weigh.
- This is a permanent record of the scan run on June 26, 2026. The verdict and evidence above reflect that scan and do not change on their own. If circumstances around iitssme1987-bit.github.io have changed, MalwareTips staff can run a fresh scan, which re-runs every check from scratch and publishes an updated report.
User reviews & comments(0)
Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.