Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
tradeservice[.]help
“Pi Browser Home”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
The domain tradeservice.help is flagged as a generic phishing site. It has been associated with fake login pages, which are designed to steal user credentials and personal information. No specific brand impersonation or drainer kit has been identified, but the domain's infrastructure and behavior suggest it is part of a broader phishing campaign.
Infrastructure analysis reveals that tradeservice.help has a VirusTotal score of 15/95, indicating a significant number of security vendors have flagged it as malicious. The domain is registered through 1API GmbH and resolves to the IP address 104.21.56.123. It was created on February 21, 2026, and has a Gridinsoft trust score of 0/100. The domain appears on one security blocklist and is blocked by PhishDestroy. It also appears in one threat intelligence pulse on AlienVault OTX. The site uses technologies such as NitroPack, Netlify, HSTS, Google Tag Manager, Cloudflare, Ahrefs, and HTTP/3, which can be used to enhance the site's functionality and appearance, potentially making it more convincing to unsuspecting users. The SSL certificate is issued by Google Trust Services, which may add a false sense of security.
The domain is currently offline, which may indicate that it has been taken down by the registrar or hosting provider in response to the detected threats. Despite its offline status, the risk remains elevated due to the historical threat indicators and the potential for reactivation. Security teams are advised to monitor the domain for any signs of re-emergence and to ensure that users are informed about the risks associated with visiting it. Remaining risk factors include the domain's presence on security blocklists and the high number of security vendor detections.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260107-DE33EE- Заголовок сохранённой страницы
- Pi Browser Home
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Acceptable Use Policy (AUP): The domain tradeservice.help is actively engaged in phishing activities, which constitute a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The ongoing misuse of this domain for fraudulent purposes violates your TOS, which reserves the right to suspend or terminate services for any activities that contravene legal standards and ethical practices.
Applicable Laws (US):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: This law prohibits unauthorized access to computers and the use of such access to commit fraud, which is applicable to the phishing activities associated with this domain.
CAN-SPAM Act - 15 U.S.C. § 7701: This act regulates commercial email and prohibits deceptive practices, which are evident in the phishing schemes linked to tradeservice.help.
Wire Fraud - 18 U.S.C. § 1343: Engaging in schemes to defraud individuals via electronic communications falls under this statute, further justifying the urgent need for action against this domain.
Regulatory Note: Failure to take immediate action may expose your organization to liability under applicable laws and could result in regulatory scrutiny. Prompt compliance with your AUP and TOS is essential to mitigate potential legal repercussions.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | tradeservice.help |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
VirusTotal
6 → 15
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of tradeservice.help · checked Jun 27, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание