iportalcontactus[.]com
साक्ष्य सारांश
This domain, iportalcontactus.com, is identified as a high-risk phishing resource specializing in brand impersonation targeting Google. Analysis indicates the site was designed to mimic legitimate Google authentication portals, likely to harvest user credentials or deploy malicious payloads under the guise of official Google services. No specific drainer kit signatures were conclusively linked to this domain during the investigation, though the infrastructure aligns with credential-harvesting campaigns observed in similar cases.
Infrastructure analysis reveals the domain was registered on May 19, 2026, through OwnRegistrar, Inc., and resolved to the IP address 31.7.61.48, geolocated within Switzerland under Ripe Network Coordination Centre allocation. At the time of assessment, 24 out of 95 security vendors on VirusTotal flagged the domain as malicious, while Google Safe Browsing explicitly classified it as phishing. The domain appeared on one additional security blocklist, and its SSL certificate was issued by Let's Encrypt (serial number E8), a common choice for both legitimate and malicious sites due to its accessibility.
The domain has since been taken offline, reducing immediate exposure risk to end users. However, the infrastructure components—including the registrar and IP range—remain active and may be repurposed for future campaigns. Organizations are advised to monitor related indicators, such as the resolving IP and registrar patterns, and update detection rules to account for similar impersonation tactics. Users should verify domain authenticity before entering credentials, particularly when redirected to login portals claiming affiliation with major brands.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | iportalcontactus.com |
malicious | Sinkholed |
| OpenDNS | iportalcontactus.com |
phishing | Phishing Block |
| Hagezi Threat Feed | iportalcontactus.com |
malicious | Sinkholed |
| DigiCert UltraDNS | iportalcontactus.com |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें
4 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of iportalcontactus.com · checked May 21, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।