update-portals[.]pages[.]dev
“Compiler”
Зведення доказів
This domain is flagged as an active credential phishing campaign designed to harvest user login credentials through deceptive portal interfaces. Analysis indicates a targeted threat type focused on credential theft, rather than broader phishing or crypto-draining schemes, with infrastructure tailored to mimic legitimate authentication flows. The risk level remains under investigation due to limited detection coverage and ambiguous hosting patterns. Infrastructure analysis reveals the domain is registered through Cloudflare, Inc., and currently resolves to the IP address 188.114.96.3. The SSL certificate is issued by Google Trust Services, a common but not inherently malicious provider. As of the latest scan, the domain has evaded detection on major blocklists, with 0 out of 95 security engines on VirusTotal flagging it as malicious. No creation date is publicly available, limiting temporal analysis, but the domain’s active status and low detection rate suggest either recent deployment or evasion techniques in use. To mitigate credential theft risks associated with this domain, users and administrators should implement strict access controls, including multi-factor authentication for all accounts. Network-level protections, such as DNS filtering or IP-based blocking of 188.114.96.3, can disrupt communication with the malicious infrastructure. Organizations should also monitor for anomalous login attempts or unauthorized access originating from interactions with update-portals.pages.dev. Given the domain’s low detection rate, manual verification of portal authenticity is critical before entering credentials.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of update-portals.pages.dev · checked Jun 26, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога