netflix-clone-blond-gamma[.]vercel[.]app
“Home - Netflix”
netflix-clone-blond-gamma.vercel.app — المحتوى غير متوفر. انتحال العلامة التجارية: Netflix; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 23/94 (ADMINUSLabs, Criminal IP, alphaMountain.ai, Bfore.Ai PreCrime, BitDefender); URLQuery 8 det.; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. مسجّل النطاق: Vercel.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, netflix-clone-blond-gamma.vercel.app, is flagged as a high-risk brand impersonation operation targeting Netflix users. Analysis indicates the infrastructure is designed to mimic the legitimate Netflix login and content portal, likely to harvest user credentials or payment details. The page title, 'Home - Netflix,' reinforces the deception by replicating the authentic Netflix interface, increasing the likelihood of successful social engineering. No cryptocurrency drainer kit signatures were detected, suggesting the primary objective is credential theft rather than direct financial exfiltration via blockchain transactions. Infrastructure analysis reveals the domain was registered through Vercel Inc., a platform commonly abused for rapid deployment of phishing pages due to its ease of use and free hosting capabilities. The domain resolves to the IP address 216.198.79.3, geolocated within the United States under AS16509 (Amazon.com, Inc.). As of the latest scan, 23 out of 95 security vendors on VirusTotal have flagged the domain as malicious, while it appears on one additional security blocklist. The SSL certificate is issued by Google Trust Services (WR1), which, while providing encryption, does not validate the legitimacy of the site’s content. No creation date metadata was provided, but the domain remains operational and unblocked by major browser-based protection mechanisms such as Google Safe Browsing. The domain remains active and continues to pose a significant risk to end users, particularly those unfamiliar with identifying cloned interfaces. Response actions by security vendors have been limited, with only one known blocklist (PhishDestroy) currently mitigating exposure. The combination of a convincing Netflix impersonation, minimal detection coverage, and reliance on a reputable hosting provider increases the likelihood of sustained victim engagement. Users are advised to verify domain authenticity by cross-referencing URLs with official Netflix communications, enabling multi-factor authentication on streaming accounts, and reporting suspicious domains to their security providers. Organizations should update email and web filtering rules to block this domain and monitor for related infrastructure leveraging the same registrar or hosting patterns.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
التقنيات · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of netflix-clone-blond-gamma.vercel.app · checked Mar 16, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب