MALICIOUS — CRITICAL
فحص التصيد والأمان للنطاق doublezero-rewards.vercel.app
doublezero-rewards[.]
PhishDestroy identifies doublezero-rewards.vercel.app as an active fake rewards phishing domain posing elevated risk to end users.
- VirusTotal
- 3/91
- Blocklists
- 2 · MetaMask, SEAL
- التوفر
- مغطى بعباءة · يمكن الوصول إليه · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
doublezero-rewards.vercel.app — مغطى بعباءة · يمكن الوصول إليه (HTTP 200). انتحال العلامة التجارية: MetaMask; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 3/91 (ChainPatrol, alphaMountain.ai, Forcepoint ThreatSeeker); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 98/100. مسجّل النطاق: Vercel.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
PhishDestroy identifies doublezero-rewards.vercel.app as an active fake rewards phishing domain posing elevated risk to end users.
This domain was flagged with a 2/95 detection rate on VirusTotal, registered through Vercel Inc., resolving to IP 64.29.17.3, and secured with a Google Trust Services SSL certificate. The domain appears on 2 separate security blocklists and is actively blocked by SEAL and MetaMask detection systems. Given the presence of a deceptive 'rewards' lure, the combination of low VirusTotal coverage and known blocklist inclusion elevates the risk profile for unsuspecting visitors.
The specific threat is a fake rewards phishing domain designed to mimic legitimate incentive programs and harvest user credentials or financial data. Technical indicators include the use of a trusted registry (Vercel) to host malicious content, combined with a valid SSL certificate from Google Trust Services to appear legitimate. Despite low detection coverage (2/95), the domain is flagged by high-confidence security systems including SEAL and MetaMask, indicating active malicious behavior. The IP address (64.29.17.3) and blocklist presence further support its classification as a phishing operation.
To mitigate risk from fake rewards phishing domains like doublezero-rewards.vercel.app, users should avoid clicking unverified links promising rewards or financial incentives. Always verify domains by checking for HTTPS, correct spelling, and official contact information. Organizations should deploy DNS-based threat intelligence feeds (e.g., SEAL) and browser extensions (e.g., MetaMask) that block known phishing domains. Security teams should investigate any internal access to this domain for signs of credential compromise or lateral movement.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 6 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
JavaScript library for building user interfaces with component-based architecture.
Cloud platform for frontend deployment, optimized for Next.js.
React framework for production with hybrid static and server rendering.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Module bundler for modern JavaScript applications.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of doublezero-rewards.vercel.app · checked Apr 18, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.