gettingstart[.]ghost[.]io
“gettingstart”
Resumo das evidências
This domain, gettingstart.ghost.io, posed a specific brand impersonation threat targeting Revolut, a financial services company. Analysis indicates the page was designed to mimic Revolut's official branding and interface, likely to harvest login credentials or personal information from unsuspecting visitors. The domain was classified as an elevated risk due to its direct impersonation of a well-known financial brand and its appearance on one security blocklist.
Infrastructure analysis reveals the domain was created on October 1, 2011, and registered through 1API GmbH. It resolved to IP address 151.101.3.7 and utilized Varnish, Nginx, and OpenResty technologies. VirusTotal detection shows 3 out of 95 security vendors flagged this domain as malicious. The SSL certificate was issued by Let's Encrypt, and the Gridinsoft trust score was 0/100, indicating no trustworthiness. The domain was blocked by PhishDestroy and is currently offline.
Users who visited this domain should immediately change their Revolut account passwords and enable two-factor authentication. They should also monitor their financial accounts for any unauthorized transactions and report any suspicious activity to Revolut's security team. Running a full antivirus scan on the device used to access the domain is recommended to ensure no malware was installed.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
VirusTotal
1 → 3
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of gettingstart.ghost.io · checked Jun 27, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo