सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 18। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@regtons.com. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
2 months
Reports sent
1
Latest case ID
PD-20260617-94614C
Current status
Observed active at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

freeflow-rodovia[.]info

“Pedágio Digital | Pague seu Free Flow online com PIX”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
वायरस का कुल पता लगाना: 18/91 URLQuery threat systems: 5 alerts घोटाले का प्रकार: Generic Phishing
OTX: 2 refs 16/06/2026 1 Report Sent
रिपोर्ट सारांश

freeflow-rodovia.info — असत्यापित. घोटाले का प्रकार: Generic Phishing. साक्ष्य सारांश: VirusTotal 18/91 (Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 5 alerts; PhishDestroy score 95/100. रजिस्ट्रार: Gransy, s.r.o.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
3C6320AB
स्कोर
95/100

The domain freeflow-rodovia.info was identified as a generic phishing site specifically targeting users of the Free Flow toll system. This fraudulent domain impersonates the legitimate Free Flow payment portal, attempting to steal credentials and payment information from unsuspecting victims. No specific crypto drainer kit was identified, but the site's design and purpose clearly indicate credential theft.

Technical indicators paint a clear picture of malicious intent. VirusTotal flagged the domain with a score of 14/95, meaning 14 security vendors classified it as malicious. The domain was registered through Gransy, s.r.o. and created on May 12, 2026, which is unusually far in the future, suggesting possible data manipulation or a placeholder. It resolves to IP address 158.173.2.152 and uses an SSL certificate issued by Let's Encrypt (YR1). AlienVault OTX recorded the domain in 2 threat intelligence pulses, and it appears on 1 security blocklist. Google Safe Browsing likely flagged it, contributing to its offline status.

Currently, the domain is offline, indicating that hosting providers or registrars have taken action to suspend the site. PhishDestroy recommends that users who may have visited the domain or entered any information should change their passwords immediately and monitor financial accounts for suspicious activity. The risk level is elevated, but the site being offline reduces immediate danger. Users should always verify the authenticity of toll payment websites by checking official URLs and avoiding unsolicited links.

VirusTotal
VirusTotal
18 det.
URLQuery
यूआरएलक्वेरी
5 threat alerts
OTX references
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
Let's Encrypt / YR1 20d
आयु
3 mo
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज VirusTotal 18 / 91 यूआरएलक्वेरी 5 threat-system alerts फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स 2 community references सीएफ रडार no data URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS valid certificate, 20d कौन है 3 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 5 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS freeflow-rodovia.info malicious Sinkholed
OpenDNS freeflow-rodovia.info phishing Phishing Block
DigiCert UltraDNS freeflow-rodovia.info malicious Sinkholed
Hagezi Threat Feed freeflow-rodovia.info malicious Sinkholed
DNS4EU freeflow-rodovia.info malicious Sinkholed

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
10/11
Sent Report Recorded
Stored sent-report record for registrar Gransy, s.r.o., hosting provider, 2 abuse contacts
abuse@turbocloud.com.brabuse@regtons.com
17/06/2026

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

पेज शीर्षक
Pedágio Digital | Pague seu Free Flow online com PIX
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Let's Encrypt / YR1 · valid for 20 days

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN nginx/1.18.0 (Ubuntu) · AS53107 EVEO S.A.
IP प्रतिष्ठा abuse score 0/100 0 reports checked 01/08/2026
रजिस्ट्रार Gransy, s.r.o
दुरुपयोग संपर्कabuse@turbocloud.com.br, abuse@regtons.com
IP पता 158.173.2.152 BR
भौगोलिक स्थानBR Vinhedo, BR
नेटवर्कAS53107 · Nucleo Brasil Servidores Ltda
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 12/05/2026 (100d) Expires 12/05/2027
Elapsed Since First Report 9h
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: असत्यापित.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला16/06/2026
DOM Analysisanalyzed 01/08/2026score 93/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://freeflow-rodovia.info/
नेमसर्वरclay.ns.cloudflare.comdina.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 11/06/2026scanned 16/06/2026
TLS SAN Domainswww.freeflow-rodovia.info
Favicon Hash
Case ID
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

18 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 19 detections
Criminal IP
alphaMountain.ai
BitDefender
Chong Lua Dao
Cluster25
CRDF
साइरेडार
ईएसईटी
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Lionic
MalwareURL
Seclookup
SOCRadar
सोफोस
VIPRE

साक्ष्य और बाहरी रिपोर्टें

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260617-94614C Recipient: abuse@regtons.com
Page title stored with report: Problem loading page
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 13.3 KB

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/freeflow-rodovia.info"
  title="PhishDestroy threat report for freeflow-rodovia.info"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।