सुरक्षा रिपोर्ट पर जाएँ
Checked 09/08/2026 Ref D691CD5F

MALICIOUS — CRITICAL

leocosta1[.]github[.]io

PhishDestroy identifies leocosta1.github.io as an active credential theft phishing domain operating at an elevated risk level.

85/100 evidence score · Critical
VirusTotal
10/91
Blocklists
No stored match
उपलब्धता
सामग्री अनुपलब्ध · HTTP 404
Report / Add Evidence Appeal this listing
2026-05-01 13:12 UTCसामग्री अनुपलब्ध · HTTP 404

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 10। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
Jump to section
रिपोर्ट सारांश

leocosta1.github.io — सामग्री अनुपलब्ध (HTTP 404). घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 10/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Fortinet); URLQuery 1 alert; PhishDestroy score 85/100. रजिस्ट्रार: GitHub.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

Evidence Analysis

Ref D691CD5F

PhishDestroy identifies leocosta1.github.io as an active credential theft phishing domain operating at an elevated risk level. This GitHub-hosted page impersonates legitimate services to harvest user login credentials, making it a persistent threat to unaware visitors.

This domain was flagged by 7 out of 95 VirusTotal security vendors, indicating significant malicious activity. It resolves to IP 185.199.108.153 via GitHub’s infrastructure, leveraging a valid Let’s Encrypt SSL certificate to appear trustworthy. As a recently registered GitHub Pages domain, it lacks historical trust signals and remains undetected by major blocklists despite its active distribution.

To mitigate risks, avoid interacting with leocosta1.github.io entirely. If credentials were entered, immediately reset passwords on all potentially affected accounts and enable two-factor authentication. Report the domain to GitHub and your security team to aid in its takedown. Use dedicated phishing detection tools to cross-verify suspicious pages before submission of any sensitive data.

VirusTotal
VirusTotal
10 det.
URLQuery
यूआरएलक्वेरी
1 threat alert
DNS Security
3/14
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
Let's Encrypt
Hosting
GitHub Pages
आयु
3 mo
देखी गई स्थिति
सामग्री अनुपलब्ध 404
PhishDestroy
विनाश सूची
सूचीबद्ध
डेटा कवरेज12 recorded checks
VirusTotal 10 / 91 यूआरएलक्वेरी 1 threat-system alert फ़िशस्टैट्स checked — no match recorded ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक 3/14 TLS valid certificate, 65d कौन है 3 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
DNS Provider Blocks 3 / 14
Controld Adblock Controld Family Controld Malware
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU leocosta1.github.io malicious Sinkholed
Free Hosting Detected GitHub Pages
This domain is hosted on GitHub Pages (free hosting platform). This hosting platform is generally reputable but can occasionally host malicious content.

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
13/14

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN GitHub.com · AS54113 Fastly, Inc.
IP Context Fastly shared edge origin IP hidden एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।
प्लेटफ़ॉर्म प्रदाता GitHub
दुरुपयोग संपर्कabuse@github.com
IP पता 185.199.108.153 CDN
भौगोलिक स्थानUS San Francisco, US
नेटवर्कAS54113 · GitHub, Inc
रिवर्स IPviewdns.info → rapiddns.io →
मूल आईपी सीडीएन प्रॉक्सी के पीछे छिपा हुआ है। किनारे के पते के लिए रिवर्स-आईपी परिणामों में असंबंधित किरायेदार शामिल हैं; मूल का पता लगाने के लिए निष्क्रिय DNS या प्रमाणपत्र-पारदर्शिता डेटा की आवश्यकता होती है।
HTTP स्थिति404 Not Found
पहली अनुपलब्धता तक का समय 68 days
हम क्या मापते हैं पहली संग्रहीत दुरुपयोग रिपोर्ट से लेकर पहली बार अवलोकन तक कि सामग्री अनुपलब्ध थी, बीता हुआ समय। इससे कारण स्थापित नहीं होता.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला01/05/2026
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://leocosta1.github.io/instagram-clone
TLS Fingerprint
TLS Observationvalid from 06/04/2026scanned 01/05/2026
TLS SAN Domainsgithub.comgithub.iogithubusercontent.com
पेज शीर्षक
Site not found · GitHub Pages
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Let's Encrypt · valid for 65 days
तकनीकें · 3 identified
Varnish
Caching

Varnish is a reverse caching proxy.

www.varnish-cache.org 100% विश्वास
GitHub Pages
PaaS

GitHub Pages is a static site hosting service.

pages.github.com 100% विश्वास
Fastly
CDN

Fastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.

www.fastly.com 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

10 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
साइरेडार
Fortinet
G-Data
Gridinsoft
Lionic
MalwareURL
सोफोस
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of leocosta1.github.io · checked May 1, 2026

100
Good
Performance
FCP
0.8s
First Contentful Paint
LCP
0.8s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
0.8s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें
इस रिपोर्ट को एम्बेड करेंRead-only HTML widget
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/leocosta1.github.io"
  title="PhishDestroy threat report for leocosta1.github.io"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>