सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 17। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@ptisp.pt. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
5 months
Reports sent
1
Latest case ID
PD-20260318-7EFC7F
Current status
Observed active at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

referestrategia[.]pt

“Index of /”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
वायरस का कुल पता लगाना: 17/94 URLQuery threat systems: 4 alerts घोटाले का प्रकार: Credential Phishing
18/03/2026 1 Report Sent
रिपोर्ट सारांश

referestrategia.pt — असत्यापित. घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 17/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 4 alerts; Google Safe Browsing flagged; PhishDestroy score 95/100.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
37C2C5DD
स्कोर
95/100

This domain, referestrategia.pt, is identified as a generic phishing site designed to harvest user credentials through deceptive login interfaces. Analysis indicates no direct association with a specific brand or drainer kit, though the presence of an open directory listing (Index of /) suggests potential staging or misconfiguration commonly observed in hastily deployed phishing infrastructure. The domain lacks overt branding, increasing the likelihood of broad, opportunistic targeting rather than a spear-phishing campaign against a particular organization. Technical indicators confirm the domain's malicious nature. VirusTotal reports 17 out of 95 security vendors flagging referestrategia.pt as malicious. The domain was registered on October 23, 2023, and resolves to the IP address 5.253.183.22, hosted on AS24768 (ALMOUROLTEC SERVICOS DE INFORMATICA E INTERNET LDA) in Portugal. Google Safe Browsing explicitly classifies the domain as phishing, and it appears on one security blocklist. The SSL certificate is issued by Let's Encrypt (R13), a common choice for both legitimate and malicious sites due to its free and automated issuance process. As of the latest assessment, referestrategia.pt has been taken offline, likely in response to detection and reporting. However, the infrastructure remains a residual risk. The hosting provider and registrar may still retain logs or artifacts that could facilitate further malicious activity if the threat actor reacquires control. Organizations are advised to block the domain and IP at the perimeter, monitor for related indicators of compromise, and educate users on recognizing open directory listings as potential red flags. Given the domain's recent creation and rapid takedown, continued vigilance for similar domains leveraging the same IP or registrar is recommended.

VirusTotal
VirusTotal
17 det.
URLQuery
यूआरएलक्वेरी
4 threat alerts
DNS Security
6/14
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
Let's Encrypt
आयु
2.8 yr
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज VirusTotal 17 / 94 यूआरएलक्वेरी 4 threat-system alerts फ़िशस्टैट्स checked — no match recorded ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक 6/14 TLS valid certificate, 89d कौन है 34 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
DNS Provider Blocks 6 / 14
Adguard Default Adguard Family Controld Adblock Controld Family Controld Malware Quad9 Secure
Threat Detection Systems 4 alerts
Detection System Indicator Verdict Alert
OpenDNS referestrategia.pt phishing Phishing Block
Hagezi Threat Feed referestrategia.pt malicious Sinkholed
Quad9 DNS referestrategia.pt malicious Sinkholed
DNS4EU referestrategia.pt malicious Sinkholed

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
12/13

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
गूगल सुरक्षित ब्राउज़िंग ध्वजांकित Social engineering checked 18/03/2026
सर्वर / ASN nginx · AS24768 ALMOUROLTEC ALMOUROLTEC SERVICOS DE INFORMATICA E INTERNET LDA, PT
IP प्रतिष्ठा abuse score 0/100 0 reports checked 13/08/2026
IP पता 5.253.183.22 PT
भौगोलिक स्थानPT Lisbon, PT
नेटवर्कAS24768 · ALMOUROLTEC SERVICOS DE INFORMATICA E INTERNET LDA
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 23/10/2023
Elapsed Since First Report 8 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: असत्यापित.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला18/03/2026
DOM Analysisanalyzed 24/03/2026score 0/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://referestrategia.pt/
नेमसर्वरns1.wp-ns.comns2.wp-ns.com
TLS Fingerprint
TLS Observationvalid from 17/03/2026scanned 24/03/2026
Case ID
पेज शीर्षक
Index of /
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Let's Encrypt · valid for 89 days
तकनीकें · 2 identified
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org 100% विश्वास
OpenResty
Web servers

OpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.

openresty.org 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

17 / 94 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
साइरेडार
DNS8
ईएसईटी
Fortinet
G-Data
Google Safebrowsing
Gridinsoft
Lionic
SOCRadar
सोफोस
VIPRE
वेबरूट
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of referestrategia.pt · checked Mar 18, 2026

100
Good
Performance
FCP
0.76s
First Contentful Paint
LCP
0.76s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
0.76s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

साक्ष्य और बाहरी रिपोर्टें

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260318-7EFC7F Recipient: abuse@ptisp.pt
Page title stored with report: Index of /
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 5.4 KB

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/referestrategia.pt"
  title="PhishDestroy threat report for referestrategia.pt"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>