ads-supports-5m72[.]vercel[.]app
“Deployment Unavailable”
ads-supports-5m72.vercel.app — Inhalt nicht verfügbar. Betrugstyp: Tech Support Scam. Zusammenfassung der Beweislage: VirusTotal 10/93 (alphaMountain.ai, BitDefender, CyRadar, Fortinet, G-Data); URLQuery 4 alerts; CF Radar malicious; PhishDestroy score 80/100. Registrar: Tucows.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Analysis of ads-supports-5m72.vercel.app indicates a confirmed tech support phishing operation that was taken offline as of the report date, July 24, 2026. The domain was registered on February 21, 2026 through Tucows Domains Inc. and resolves to the IP address 64.29.17.67, which is owned by Amazon.com, Inc. (AS16509) and geolocated to the United States. The site presented an HTTP 451 status code and the page title "Deployment Unavailable," suggesting that the front‑end content was deliberately removed or hidden before takedown. SSL termination is provided by Google Trust Services under the WR1 certificate, and the underlying hosting stack includes Vercel with HTTP Strict Transport Security (HSTS) enforced.
The domain appears on one security blocklist and has been flagged by PhishDestroy. VirusTotal scans show ten of ninety‑three anti‑malware engines flagging the domain as malicious, providing independent confirmation of its threat status. The listed scam type is a tech support scam, which aligns with the observed infrastructure and the rapid takedown timeline. While the exact phishing payload or credential‑stealing mechanisms have not been captured, the combination of registrar data, hosting provider, SSL issuer, and detection signatures offers sufficient indicators for defensive controls.
Security teams should add the domain and its associated IP address to blocklists, enforce DNS sinkholing, and monitor for any residual traffic from the AS16509 network. Continuous re‑scanning of the IP range is advised, as the hosting environment could be reused for future campaigns. Incident response teams should also review any recent user reports of unsolicited tech support calls that reference the domain or its sub‑paths, as attackers may have leveraged the same social‑engineering vector before the site was decommissioned.
Erkenntnisse zur Netzwerksicherheit
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | ads-supports-5m72.vercel.app |
malicious | Sinkholed |
| Quad9 DNS | ads-supports-5m72.vercel.app |
malicious | Sinkholed |
| DNS0 Zero | ads-supports-5m72.vercel.app |
malicious | Sinkholed |
| OpenDNS | ads-supports-5m72.vercel.app |
phishing | Phishing Block |
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of ads-supports-5m72.vercel.app · checked Mar 2, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt