espaminoles452543[.]vercel[.]app
“Encuentroooss D1screetooss”
espaminoles452543.vercel.app — مغطى بعباءة · يمكن الوصول إليه. ملخص الأدلة: VirusTotal 14/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Ermes); CF Radar malicious; cloaking observed; PhishDestroy score 97/100. مسجّل النطاق: Vercel.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies espaminoles452543.vercel.app as an active credential-harvesting domain with elevated risk. This site masquerades as a confidential meeting portal titled “Encuentroooss D1screetooss” to trick users into submitting login credentials. The domain is registered via Vercel Inc. and resolves to IP 64.29.17.195. It holds a Google Trust Services SSL certificate, yet security vendors are highly cautious, with 11 out of 95 flagging this domain. No blocklist data was provided, but the low trust score and high VT detection ratio strongly correlate with malicious intent. The presence of a valid SSL certificate suggests an attempt to appear legitimate, a common tactic in modern phishing campaigns. This domain is currently active and should be treated with extreme caution. The combination of a deceptive page title, trusted SSL issuer, and high VT detection ratio indicates a sophisticated phishing operation. The use of a Vercel subdomain may be leveraged to bypass traditional domain-based filtering. The IP address 64.29.17.195 is associated with Vercel’s infrastructure, which is often abused by threat actors to host phishing pages due to Vercel’s legitimate reputation. The page title’s misspelling (“Encuentroooss D1screetooss”) is a linguistic cue intended to evade keyword-based detection while maintaining visual similarity to target language phrases. To mitigate risk, users should avoid accessing this domain entirely. Organizations should block espaminoles452543.vercel.app at the network perimeter using DNS filtering or firewall rules referencing the domain and IP 64.29.17.195. If credentials were entered, immediately reset passwords on all related accounts and enable multi-factor authentication. Report this domain to your organization’s threat intelligence team or to platforms like Google Safe Browsing, PhishTank, or your email security provider. Monitor for follow-on spear-phishing attempts targeting users who may have fallen victim. This domain should be considered hostile until independently verified as safe.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 7 identified
Popular CSS framework for responsive, mobile-first web development.
Cloud platform for frontend deployment, optimized for Next.js.
Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web analytics service tracking website traffic and user behavior.
marketingplatform.google.comتحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of espaminoles452543.vercel.app · checked Apr 14, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب