strtportal[.]ghost[.]io
“Site unavailable”
strtportal.ghost.io — Неперевірений. Зведення доказів: VirusTotal 0/91; URLQuery 3 alerts; PhishDestroy score 63/100. Реєстратор: Ghost.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
strtportal.ghost.io was first observed on July 12, 2026 and is classified as a high‑risk generic phishing infrastructure. The domain was registered on February 21, 2026 through the Ghost registrar and remains active as of the reporting date. The sole page title returned by HTTP requests is “Site unavailable”, indicating that the content has not been publicly disclosed. The authoritative name server for the domain is ghost.map.fastly.net, and HTTP queries return a 301 redirect. DNS resolution resolves the name to the IPv6 address 2a04:4e42:400::775, which belongs to AS54113 Fastly, Inc. and is geolocated to the United States. The site presents a valid Let's Encrypt R12 certificate and the underlying web stack reports Varnish, Nginx and OpenResty components. Reputation scoring shows a Gridinsoft trust value of 0 out of 100, and VirusTotal records a single positive detection out of 95 scanned security vendors. The domain appears on one public blocklist and is actively blocked by the PhishDestroy mitigation service. These indicators collectively reinforce the high‑risk assessment despite the limited number of vendor flags. Defenders should immediately add strtportal.ghost.io and its resolved IPv6 address to deny‑list controls at DNS and firewall layers. Continuous monitoring of the Fastly edge host for any change in HTTP response codes or page content is recommended, as the current “Site unavailable” title provides no insight into the phishing payload. Correlating internal logs for any connections to the domain or its IP can help identify compromised endpoints, and threat‑intel feeds should be updated to reflect the confirmed phishing status.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | strtportal.ghost.io |
malicious | Sinkholed |
| DNS4EU | strtportal.ghost.io |
malicious | Sinkholed |
| Hagezi Threat Feed | strtportal.ghost.io |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіOpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of strtportal.ghost.io · checked Mar 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога