الانتقال إلى تقرير الأمان
Checked 09/08/2026 Ref 03DCD65C

MALICIOUS — CRITICAL

فحص التصيد والأمان للنطاق doublezero-rewards.vercel.app

doublezero-rewards[.]vercel[.]app

PhishDestroy identifies doublezero-rewards.vercel.app as an active fake rewards phishing domain posing elevated risk to end users.

98/100 evidence score · Critical
VirusTotal
3/91
Blocklists
2 · MetaMask, SEAL
التوفر
مغطى بعباءة · يمكن الوصول إليه · HTTP 200
Report / Add Evidence Appeal this listing
2026-04-18 13:27 UTCمغطى بعباءة · يمكن الوصول إليه · HTTP 200

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 3. قوائم الحظر العامة التي تبلغ عن تطابق: 2. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
Jump to section
ملخص التقرير

doublezero-rewards.vercel.app — مغطى بعباءة · يمكن الوصول إليه (HTTP 200). انتحال العلامة التجارية: MetaMask; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 3/91 (ChainPatrol, alphaMountain.ai, Forcepoint ThreatSeeker); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 98/100. مسجّل النطاق: Vercel.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

Evidence Analysis

Ref 03DCD65C

PhishDestroy identifies doublezero-rewards.vercel.app as an active fake rewards phishing domain posing elevated risk to end users.

This domain was flagged with a 2/95 detection rate on VirusTotal, registered through Vercel Inc., resolving to IP 64.29.17.3, and secured with a Google Trust Services SSL certificate. The domain appears on 2 separate security blocklists and is actively blocked by SEAL and MetaMask detection systems. Given the presence of a deceptive 'rewards' lure, the combination of low VirusTotal coverage and known blocklist inclusion elevates the risk profile for unsuspecting visitors.

The specific threat is a fake rewards phishing domain designed to mimic legitimate incentive programs and harvest user credentials or financial data. Technical indicators include the use of a trusted registry (Vercel) to host malicious content, combined with a valid SSL certificate from Google Trust Services to appear legitimate. Despite low detection coverage (2/95), the domain is flagged by high-confidence security systems including SEAL and MetaMask, indicating active malicious behavior. The IP address (64.29.17.3) and blocklist presence further support its classification as a phishing operation.

To mitigate risk from fake rewards phishing domains like doublezero-rewards.vercel.app, users should avoid clicking unverified links promising rewards or financial incentives. Always verify domains by checking for HTTPS, correct spelling, and official contact information. Organizations should deploy DNS-based threat intelligence feeds (e.g., SEAL) and browser extensions (e.g., MetaMask) that block known phishing domains. Security teams should investigate any internal access to this domain for signs of credential compromise or lateral movement.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
3 det.
URLQuery
URLQuery
2 threat alerts
DNS Security
1/12
شهادة TLS
Google Trust Services
Hosting
Vercel
العمر
4 mo
الحالة المرصودة
مغطى بعباءة · يمكن الوصول إليه 200
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات12 recorded checks
VirusTotal 3 / 91 URLQuery 2 threat-system alerts PhishStats checked — no match recorded OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS 1/12 TLS valid certificate, 38d WHOIS 4 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
DNS Provider Blocks 1 / 12
Quad9 Secure
Threat Detection Systems 2 alerts
Detection System Indicator Verdict Alert
Quad9 DNS doublezero-rewards.vercel.app malicious Sinkholed
DNS4EU doublezero-rewards.vercel.app malicious Sinkholed
Free Hosting Detected Vercel
This domain is hosted on Vercel (free hosting platform). Free hosting platforms are commonly used for both legitimate testing/development and malicious purposes. Additional context is needed for a def

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
13/15
تم استيعاب التهديد
doublezero-rewards.vercel.app تم اكتشافها وإدراجها في قائمة الانتظار لإجراء تحليل شامل
18/04/2026
URLScan.io Capture
Stored URLScan report with capture artifacts
URLScan Verdict
اكتمل تحليل URLScan؛ لا تغير نتيجة التقاط الويب هذه حكم تهديد الصفحة · score 0
29/07/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
3/91 recorded on VirusTotal
27/07/2026
Google Safe Browsing
18/04/2026
الكشف عن قوائم الحظر
موجود في 2 blocklists: MetaMask, SEAL
09/08/2026
DNS Security Blocks
Blocked by 1 of 12 checked DNS providers: Quad9 secure
Free Hosting: Vercel
Site hosted on Vercel — free hosting platforms are frequently used for throwaway phishing sites
Brand Impersonation
Impersonation of MetaMask
Forensic Evidence Collected
Stored evidence from URLScan.io, URLQuery, stored screenshot
Technical Analysis Recorded
يحتوي التقرير على التكنولوجيا المخزنة أو نتائج تحليل الطب الشرعي.
09/08/2026
Complaint Draft Available
لا يتم تسجيل أي تقديم. يمكنك إنشاء مسودة ومراجعتها وتقديمها بنفسك إلى السلطة المختصة.
تم نشر قائمة «DestroyList»
18/04/2026
Monitoring Continues
يظل المجال قابلاً للوصول أو مقيد الوصول؛ قد تؤدي الفحوصات المستقبلية إلى تحديث هذه الملاحظة.

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN Vercel · AS16509 Amazon.com, Inc.
IP Context Vercel shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مزود المنصة Vercel US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@vercel.com
عنوان IP 64.29.17.3 CDN
الموقع الجغرافيUS Walnut, US
الشبكةAS16509 · Vercel, Inc
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
Cloaking Cloaking Detected Content split · score 1/6
alive_content: raw=ok; http=200; via=https_proxy; server=Vercel
server: Vercel title: DoubleZero Contributor Rewards Management
checked 09/08/2026
حالة HTTP200
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف18/04/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://doublezero-rewards.vercel.app/
TLS Fingerprint
TLS Observationvalid from 26/02/2026scanned 18/04/2026
TLS SAN Domainsvercel.app
Favicon Hash
عنوان الصفحة
DoubleZero Contributor Rewards Management
شهادة TLS
Valid transport encryption · صادرة عن Google Trust Services · valid for 38 days
التقنيات · 6 identified
Node.js
Programming languages

JavaScript runtime built on Chrome V8 engine for server-side development.

React
JavaScript frameworks

JavaScript library for building user interfaces with component-based architecture.

Vercel
PaaS CDN

Cloud platform for frontend deployment, optimized for Next.js.

Next.js
JavaScript frameworks SSR

React framework for production with hybrid static and server rendering.

HSTS
الأمن

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

Webpack
Build tools

Module bundler for modern JavaScript applications.

Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

3 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 2 detections
ChainPatrol
alphaMountain.ai
Forcepoint ThreatSeeker
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of doublezero-rewards.vercel.app · checked Apr 18, 2026

54
Needs Work
Performance
FCP
1.97s
First Contentful Paint
LCP
9.86s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
693ms
Total Blocking Time
SI
4.19s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك
تضمين هذا التقريرRead-only HTML widget
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/doublezero-rewards.vercel.app"
  title="PhishDestroy threat report for doublezero-rewards.vercel.app"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>