opp-portal[.]info
“opp-portal.info is a custom short domain”
opp-portal.info — Контент недоступен. Сводка доказательств: VirusTotal 4/93 (alphaMountain.ai, CyRadar, Fortinet, Gridinsoft); URLQuery 2 alerts; Spamhaus DBL_PHISH; PhishDestroy score 65/100. Регистратор: NameSilo.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, opp-portal.info, functions as a custom short domain endpoint designed to facilitate generic phishing operations. Analysis indicates the infrastructure is engineered to redirect victims to credential harvesting pages or malicious payloads, leveraging the appearance of a legitimate URL shortener to evade suspicion. The domain does not exhibit overt brand impersonation but instead relies on social engineering tactics to deceive users into interacting with fraudulent content, potentially leading to account compromise or unauthorized data access. Evidence supporting the malicious classification includes detection by 4 out of 95 security vendors on VirusTotal, with the domain appearing on one active security blocklist. Infrastructure analysis reveals registration through NameSilo, LLC, a registrar frequently associated with low-reputation domains. The domain was created on February 21, 2026, and resolves to the IP address 207.174.61.1, which has been linked to prior phishing campaigns. The Gridinsoft trust score of 0/100 further corroborates the domain's lack of legitimacy, and it has been proactively blocked by enterprise-grade security filters. Users who have visited opp-portal.info or interacted with its content are advised to take immediate remedial action. Isolate the affected device from network access to prevent potential lateral movement or data exfiltration. Conduct a full system scan using updated endpoint protection tools to detect and remove any residual malware. Reset credentials for all accounts accessed from the compromised device, prioritizing financial, email, and corporate systems. Monitor accounts for unauthorized transactions or anomalous activity, and report the incident to relevant security teams or incident response providers for further forensic analysis.
Данные сетевой безопасности Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | opp-portal.info |
malicious | Sinkholed |
| Hagezi Threat Feed | d2te5kruq0pvbl.cloudfront.net |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
PD-20260201-C64138 Recipient: abuse@short.io Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание