MALICIOUS — CRITICAL
فحص التصيد والأمان للنطاق clonmove.vercel.app
clonmove[.]
The domain clonmove.vercel.app is assessed as a high-risk domain specifically for credential theft.
- VirusTotal
- 22/91
- Blocklists
- No stored match
- التوفر
- المحتوى غير متوفر · HTTP 451
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
clonmove.vercel.app — المحتوى غير متوفر (HTTP 451). انتحال العلامة التجارية: Netflix; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 22/91 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. مسجّل النطاق: Vercel.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
The domain clonmove.vercel.app is assessed as a high-risk domain specifically for credential theft. This assessment is based on the domain's technical indicators and the threat it poses to users who may inadvertently interact with it.
Analysis indicates that clonmove.vercel.app is flagged by 21 out of 95 security vendors on VirusTotal, suggesting a significant level of detection by cybersecurity tools. The domain is registered through Vercel Inc., a popular cloud-based web development platform, which may lend an air of legitimacy to unsuspecting users. It resolves to the IP address 216.198.79.3, and the SSL certificate is issued by Google Trust Services, further complicating detection efforts. The domain has been flagged by Google Safe Browsing for SOCIAL_ENGINEERING, indicating that it is being used to trick users into providing sensitive information. As of the current status, the domain remains active, posing a continuous threat to potential victims.
To mitigate the risk of credential theft associated with clonmove.vercel.app, organizations and individuals should implement several security measures. These include user education on the signs of phishing attacks, such as unexpected emails or messages that request login credentials. Network administrators should consider blocking the domain and its associated IP address to prevent access from within the network. Additionally, using multi-factor authentication (MFA) can significantly reduce the impact of stolen credentials. Regularly updating and patching systems to protect against vulnerabilities that could be exploited by attackers is also crucial. Security teams should monitor for any suspicious activity related to this domain and report it to the appropriate authorities or incident response teams.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | clonmove.vercel.app |
malicious | Sinkholed |
| OpenDNS | clonmove.vercel.app |
phishing | Phishing Block |
| DNS4EU | clonmove.vercel.app |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of clonmove.vercel.app · checked Jun 26, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.