folks-finance-dashboard[.]vercel[.]app
“Folks Finance Dashboard”
folks-finance-dashboard.vercel.app — مغطى بعباءة · يمكن الوصول إليه. نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 12/91 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, ESET); Google Safe Browsing flagged; cloaking observed; PhishDestroy score 100/100. مسجّل النطاق: Vercel.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, folks-finance-dashboard.vercel.app, is actively flagged as a high-risk phishing site targeting users of Folks Finance, as indicated by its page title and Google Safe Browsing's social engineering classification. Infrastructure analysis reveals it is hosted on Vercel Inc.'s platform, resolving to IP 216.198.79.3 under AS16509 (Amazon.com, Inc.) in the US. The domain was registered on December 13, 2025, and remains operational with an HTTP 200 status, suggesting it is actively serving content. SSL certification is provided by Google Trust Services (WR1), and technologies detected include Node.js, React, Next.js, and Webpack, consistent with modern web applications but not inherently malicious.
Defenders should note that the domain appears on at least one security blocklist (PhishDestroy) and has a Gridinsoft trust score of 0/100, indicating no credibility. While 11 of 95 security vendors on VirusTotal flag this domain, the absence of additional context (e.g., specific payloads, redirect chains, or kit fingerprints) limits deeper classification. The combination of Vercel hosting, a recent registration date, and social engineering flags aligns with common phishing infrastructure patterns. No concrete evidence links this domain to a known phishing kit or campaign beyond the Folks Finance branding implied by the page title.
Recommended actions include blocking the domain at the DNS or proxy level, monitoring for related subdomains or IPs under the same ASN, and reviewing logs for connections from internal networks. If Folks Finance is a known service within your organization, user education and MFA enforcement are advised to mitigate credential harvesting risks. Further analysis of the site's content (e.g., login forms, API calls) would clarify the exact phishing mechanics, but such investigation should be conducted in a controlled environment to avoid exposure.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 6 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
Cloud platform for frontend deployment, optimized for Next.js.
JavaScript library for building user interfaces with component-based architecture.
React framework for production with hybrid static and server rendering.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Module bundler for modern JavaScript applications.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of folks-finance-dashboard.vercel.app · checked Mar 2, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب