sddftyrdyfwaru[.]vercel[.]app
“Facebook”
sddftyrdyfwaru.vercel.app — مغطى بعباءة · يمكن الوصول إليه. انتحال العلامة التجارية: Facebook; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 22/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 10 det.; URLScan malicious verdict; CF Radar malicious; cloaking observed; PhishDestroy score 100/100. مسجّل النطاق: Vercel.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, sddftyrdyfwaru.vercel.app, is flagged for high-risk brand impersonation targeting Facebook. Analysis of the page title confirms the fraudulent activity, with the domain explicitly mimicking Facebook's login interface to deceive users into entering credentials. No direct evidence of a crypto drainer or malware payload was observed, but the domain aligns with credential harvesting tactics commonly deployed in phishing campaigns. Infrastructure analysis reveals the domain resolves to the IP address 216.198.79.131, hosted by Vercel, Inc. in the United States. The SSL certificate is issued by Google Trust Services (WR1), a common but not inherently malicious provider. VirusTotal detection metrics show 14 out of 95 security vendors flagging the domain as malicious. The domain appears on one security blocklist and is registered through Vercel Inc., with no historical registration data publicly available. Google Safe Browsing status was not explicitly provided, but the presence on a blocklist and VirusTotal detections confirm its malicious classification. As of the latest assessment, sddftyrdyfwaru.vercel.app remains active, posing an ongoing threat to users. Response actions should include immediate blacklisting of the domain and IP across security controls, alongside monitoring for related subdomains or newly registered lookalike domains. Organizations are advised to block access to this domain at the network level and alert users to the risk of credential theft. Given the domain's persistence, continued vigilance is required, particularly for Facebook users or those accessing social media platforms via unsecured networks.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of sddftyrdyfwaru.vercel.app · checked May 23, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب