refuel[.]eu[.]com
“Stratosphere Gas Zip - Bridging the Future of Aerospace Energy”
साक्ष्य सारांश
Analysis of the domain refuel.eu.com, registered on February 21, 2026, indicates a confirmed brand impersonation targeting Revolut, a known financial services provider. The domain is currently offline, but infrastructure evidence reveals multiple indicators of malicious intent. It resolved to IP address 172.67.193.123, hosted on Cloudflare's network (AS13335) in the United States. Nameservers point to CentralNic (ns1.centralnic.net through ns4.centralnic.net), a common provider for both legitimate and malicious domains, while the registrar is Instra Corporation Pty Ltd. The domain's MX records show a wildcard null configuration (eu-com-wildcard-null-mx.centralnic.net), a pattern often used to avoid email-based detection or to mask operational infrastructure. Gridinsoft assigns a trust score of 0/100, reflecting high-risk classification.
Three of 93 security vendors on VirusTotal flagged the domain as malicious, though this does not constitute a full consensus. The domain appears on one security blocklist, and PhishDestroy has blocked it, further supporting the elevated risk assessment. The page title, 'Stratosphere Gas Zip - Bridging the Future of Aerospace Energy,' does not align with financial services or the Revolut brand, suggesting either obfuscation or a placeholder used during domain staging. The SSL certificate (E5) is valid but does not mitigate the domain's fraudulent purpose.
While the exact content of the site remains unanalyzed, the combination of infrastructure, detection flags, and brand impersonation classification confirms its role in a phishing operation. Defenders should treat this domain as compromised and maintain blocklist entries. Organizations should monitor for related domains using the same registrar, nameserver, or hosting patterns, particularly those leveraging Cloudflare or CentralNic infrastructure. If internal logs show user interaction with refuel.eu.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।