discord-login-page-clone.vercel.app
“Discord”
Domain discord-login-page-clone.vercel.app impersonates Discord to steal credentials. Detected by 18/95 VirusTotal engines—immediate action required.
The detailed PhishDestroy AI analysis below remains in English to preserve the original forensic record.
Evidence Summary
PhishDestroy identifies discord-login-page-clone.vercel.app as an active credential theft site masquerading as Discord’s login portal. This elevated-risk domain employs brand impersonation to lure users into surrendering account credentials. The threat is classified as credential phishing due to its use of a cloned interface and false authentication prompts.
This domain was flagged by 18 of 95 VirusTotal security vendors and resolves to IP address 216.198.79.67. It is hosted via Vercel Inc., a legitimate platform often abused by threat actors, and holds a valid SSL certificate issued by Google Trust Services. Despite the certificate presence, the site’s malicious intent is evident through its deceptive naming pattern, infrastructure choices, and widespread detection across multiple security platforms.
To mitigate credential theft risks from this domain, users should avoid interacting with any unsolicited login prompts. Verify URLs manually via official Discord channels. Administrators should block this domain and its IP at network and DNS levels. Enable multi-factor authentication on all Discord accounts. Report the site to Discord support and Vercel abuse teams to aid in takedown efforts and prevent further abuse of trusted platforms.
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | discord-login-page-clone.vercel.app |
malicious | Sinkholed |
| OpenDNS | discord-login-page-clone.vercel.app |
phishing | Phishing Block |
| DNS4EU | discord-login-page-clone.vercel.app |
malicious | Sinkholed |
Threat Response Pipeline
Public Blocklist Status
Stored detection
Cloaking alert
- Cloaking type
content_split- Cloaking score
- 1/6
Technologies · 4 identified
VirusTotal Analysis
Community reports
Reported by 1 community member, first seen May 7, 2026
- Stored reports
- 1
- Unique reported URLs
- 1
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive