MALICIOUS — CRITICAL
فحص التصيد والأمان للنطاق vanderlex.com
vanderlex[.]
vanderlex.com is a generic phishing domain that was taken offline after being identified as a social media phishing scam.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- التوفر
- مغطى بعباءة · يمكن الوصول إليه · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
vanderlex.com — مغطى بعباءة · يمكن الوصول إليه (HTTP 502). انتحال العلامة التجارية: Across; نوع الاحتيال: Social Media Phishing. ملخص الأدلة: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); cloaking observed; PhishDestroy score 86/100. مسجّل النطاق: Ultahost.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
vanderlex.com is a generic phishing domain that was taken offline after being identified as a social media phishing scam. It posed no specific brand impersonation and did not deploy a drainer kit, but its elevated risk level stems from its purpose to harvest login credentials or personal information through deceptive social media-themed lures. The site is no longer active, indicating it has been neutralized by security measures.
Technical indicators for vanderlex.com include a low detection rate of 1 of 95 VirusTotal vendors, with no flag from Google Safe Browsing. It appears on 1 security blocklist (PhishDestroy). The domain was registered through Ultahost, Inc. on June 19, 2025 at 12:48:31, and resolves to IP address 172.67.133.155, hosted by Cloudflare, Inc. in Canada. SSL certificate was issued by Google Trust Services. The page title observed was 'Home - Vanderlex', and the site utilized technologies including WordPress, MySQL, PHP, Bootstrap, Yoast SEO, Swiper, Slider Revolution, and Select2. Nameservers are mona.ns.cloudflare.com and wells.ns.cloudflare.com.
To protect against potential harm from vanderlex.com, users who may have interacted with the site should change passwords for any accounts where credentials were entered, enable two-factor authentication on those accounts, and monitor for unauthorized activity. Since this was a generic phishing site without a crypto drainer, no token revocations are needed, but victims should report the domain to PhishDestroy and their email provider to help block similar threats. If financial or personal data was compromised, contact relevant institutions immediately.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات14 recorded checks
مؤشرات الأمان
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 16 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Popular CSS framework for responsive, mobile-first web development.
Modern mobile touch slider with hardware-accelerated transitions.
Touch-enabled jQuery plugin for responsive carousel sliders.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Icon font library.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of vanderlex.com · checked Mar 18, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260318-BD13F4 Recipient: u-abuse@ultahost.com Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.