ecocashquickloans[.]vercel[.]app
فحص التصيد والأمان للنطاق ecocashquickloans.vercel.app
“ecocashquickloans.vercel.app”
ecocashquickloans.vercel.app — مغطى بعباءة · يمكن الوصول إليه (HTTP 451). نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 8/91 (Fortinet, Gridinsoft, Kaspersky, LevelBlue, OpenPhish); CF Radar malicious; cloaking observed; PhishDestroy score 74/100. مسجّل النطاق: Vercel.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
On 24 July 2026 analysts observed that the domain ecocashquickloans.vercel.app was taken offline after being identified as a generic phishing site. The domain was registered through Vercel Inc. on 18 June 2026 and resolves to the IP address 64.29.17.67, which belongs to Amazon.com, Inc. (AS16509) and is geolocated in the United States. The web server returned HTTP status code 451, indicating that access was blocked for legal reasons, and the site was subsequently blocked by the PhishDestroy feed. VirusTotal records show that 8 of 91 scanned security vendors flagged the domain as malicious, and it appears on one external security blocklist.
Technical fingerprinting revealed the use of Vercel hosting services and the presence of HTTP Strict Transport Security (HSTS). The SSL certificate is issued by Google Trust Services under the WR1 designation, providing a valid TLS layer but offering no assurance of legitimacy. The page title returned by the server matches the domain name exactly, and no alternative titles or brand references were observed. Reputation scoring from Gridinsoft assigned a trust score of 0 out of 100, indicating a lack of confidence in the site's safety.
Nameserver resolution failed, returning NS_NOT_FOUND, which further hinders forensic attribution. While the available data confirms phishing activity, the specific payload or credential‑harvesting mechanisms remain unverified because the site is no longer reachable. Defenders should continue to block the domain at perimeter and DNS layers, monitor the associated IP 64.29.17.67 for any reuse, and update internal blocklists with the observed indicators. Additional investigation of the hosting account on Vercel may reveal related malicious artifacts, and analysts should watch for newly registered subdomains that reuse the same infrastructure.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب