getuser[.]ghost[.]io
getuser.ghost.io की फ़िशिंग और सुरक्षा जाँच
“Site unavailable”
getuser.ghost.io — अंतिम ज्ञात सक्रिय (HTTP 301). साक्ष्य सारांश: VirusTotal 8/93 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar); URLQuery 3 alerts; CF Radar malicious; PhishDestroy score 95/100. रजिस्ट्रार: 1API.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of the domain getuser.ghost.io shows a newly registered host created on February 21, 2026 and currently resolving to the IPv6 address 2a04:4e42:400::775. The domain is served through Cloudflare nameservers (woz.ns.cloudflare.com, sara.ns.cloudflare.com) and appears to be front‑ended by Varnish, Nginx and OpenResty, indicating a typical web‑hosting stack. HTTP responses return a 301 redirect and the TLS certificate is issued by Let’s Encrypt (R12). The site title returned by the server is "Site unavailable," and no additional page content has been captured. Infrastructure data places the host in the United States under ASN 54113 (Fastly, Inc.). Reputation signals are poor: Gridinsoft assigns a trust score of 0/100, the domain is listed on a single security blocklist, and eight of ninety‑three VirusTotal scanners flag the host. It is also blocked by the PhishDestroy feed. Registration was processed through 1API GmbH. While the specific brand or credential‑stealing template used by the site is not observable, the combination of a recent registration, low trust scores, active blocklist listings, and a generic landing page aligns with a high‑risk generic phishing operation. Defenders should add getuser.ghost.io to deny‑list controls, monitor DNS queries for the domain, and enforce TLS inspection to capture any subsequent payloads. Continuous re‑evaluation is advised in case the site evolves to host credential‑collection pages.
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | getuser.ghost.io |
malicious | Sinkholed |
| DNS4EU | getuser.ghost.io |
malicious | Sinkholed |
| Hagezi Threat Feed | getuser.ghost.io |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% विश्वासOpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 100% विश्वासवायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of getuser.ghost.io · checked Mar 2, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।