discord-login-three.vercel.app
“Discord”
Evidence Summary
The domain discord-login-three.vercel.app has been identified as a high-risk entity related to brand impersonation, specifically targeting Discord. This domain was created on March 26, 2026, and is currently active, having been flagged by multiple security vendors. Analysis from VirusTotal indicates that 19 out of 95 security vendors have flagged the domain, suggesting a significant level of concern about its legitimacy. Furthermore, the domain has a Scamadviser trust score of 1 out of 100 and a Gridinsoft trust score of 0 out of 100, both of which indicate a high likelihood of fraudulent activity. The presence on two security blocklists further corroborates its malicious nature.
The domain resolves to the IP address 64.29.17.131 and employs technologies such as Vercel and HSTS, which are commonly used for hosting applications but can also be misused in the context of malicious activities. The page title is simply 'Discord', reinforcing the intent to impersonate the legitimate brand and deceive users into providing sensitive information. Google Safe Browsing has flagged this domain for social engineering, which aligns with the observed behavior of attempting to mimic the official Discord login process.
Given the indicators of compromise, it is recommended that organizations and individuals exercise extreme caution with this domain. Users should be advised to avoid entering any personal information or credentials on this site. Furthermore, it is advisable for defenders to block this domain and its associated IP address at the network level. Continuous monitoring of the domain's activity is also recommended, as it may evolve or change tactics to avoid detection. Enhanced awareness and training regarding such impersonation tactics can further assist in mitigating the risks associated with this active malicious domain.
Network Security Intelligence
Detection timeline
-
VirusTotal
21 → 19 (-2) (Added: ADMINUSLabs, Google Safebrowsing, alphaMountain.ai) (Removed: Chong Lua Dao, MalwareURL, OpenPhish, SafeToOpen, Seclookup)
Threat Response Pipeline
Public Blocklist Status
Blocklist coverage
11 monitored external feeds · stored snapshot Sep 10, 2026
Stored detection
Cloaking alert
- Cloaking type
content_split- Cloaking score
- 1/6
Technologies · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of discord-login-three.vercel.app · checked Jul 12, 2026
Technologies
2 high-confidence technologies identified
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive