The domain fortrank.shop is currently listed as active and assigned a high risk rating. Infrastructure analysis shows the domain resolves to the IPv4 address 158.94.211.169 and is serviced by the DNS providers a.dnspod.com, b.dnspod.com, and c.dnspod.com. The hosting infrastructure appears to be associated with the DNSpod name‑server network, which is commonly used by short‑lived malicious sites. Reputation checks indicate that the domain is present on a single security blocklist and has been explicitly blocked by the PhishDestroy feed.
VirusTotal reports nine of ninety‑one scanning engines flag the domain as malicious, confirming a non‑trivial detection rate across independent vendors. No additional public intelligence such as SSL certificate details, HTTP response codes, or page‑title information is presently available, limiting the depth of behavioral analysis. The lack of further artefacts means that the precise phishing payload or targeted brand cannot be confirmed at this stage.
Defenders should prioritize immediate containment by adding the domain and its resolved IP address to network deny lists, updating web‑proxy and DNS filtering rules, and monitoring for any related look‑alike domains that share the same name‑server set. Continuous re‑scanning of the domain on platforms such as VirusTotal is advisable to capture any changes in detection posture. Given the active status and the existing vendor detections, the domain should be treated as a confirmed phishing threat until further evidence suggests remediation.