Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
portflowltd[.]com
“HOME | PORTFLOW SERVICES LTD”
Сводка доказательств
portflowltd.com is currently listed as a high‑risk generic phishing site. The domain was created on 7 April 2025 and remains active as of the 12 July 2026 reporting date. Automated analysis classifies the site under the generic_phishing category, and it appears on one public blocklist maintained by PhishDestroy. Six of ninety‑five VirusTotal scanners have flagged the host, indicating a modest but notable detection rate among security vendors. The domain resolves to the IPv4 address 163.61.188.7, which resolves to a server located in the United States, specifically the MIT network segment. Registration was performed through TuringSign Inc. d/b/a Cosmotown, and the authoritative name servers are dns1.lytehosting.com through dns4.lytehosting.com. The site serves a valid Let’s Encrypt R12 TLS certificate and returns HTTP 200 responses. A review of the page source reveals the presence of Zoho, Bootstrap, LiteSpeed, OWL Carousel, jQuery, Google Tag Manager, Popper, and HTTP/3, indicating a modern web stack that may be leveraged to increase credibility. The visible page title reads “HOME | PORTFLOW SERVICES LTD,” a clear attempt to mimic a legitimate corporate brand. Gridinsoft’s trust scoring system assigns a rating of 26 out of 100, reflecting a low confidence level in the site’s legitimacy. Although only a single blocklist entry is currently recorded, the combination of the phishing classification, the modest vendor detection count, and the low trust score collectively support the high‑risk rating. Defenders should add portflowltd.com and its resolving IP address 163.61.188.7 to network‑level deny lists and monitor DNS queries for the associated name servers. Email gateways ought to enforce URL filtering against known phishing indicators, and any credential‑capture forms observed on the site should be treated as malicious. Continuous re‑evaluation is advised, as changes to the hosting infrastructure or additional vendor detections could alter the threat posture.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260520-05DA50- Заголовок сохранённой страницы
- HOME | PORTFLOW SERVICES LTD
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Сигналы безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено 8 технологий с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of portflowltd.com · checked May 20, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание