# netflixclone-mu-seven.vercel.app — MALICIOUS > PhishDestroy identifies netflixclone-mu-seven.vercel.app as a Netflix clone phishing site. 22/95 security vendors flagged this domain. ## Summary PhishDestroy identifies netflixclone-mu-seven.vercel.app as an active phishing campaign impersonating Netflix to steal login credentials. This domain mimics the branding and interface of the legitimate streaming platform, tricking users into submitting their account details under the guise of account verification or payment processing. Threat actors commonly leverage such deceptive domains in phishing emails, SMS messages, or social media links to harvest sensitive information for financial fraud or identity theft. This domain was flagged by 22 of 95 security vendors on VirusTotal, indicating widespread recognition of its malicious nature. It was registered through Vercel Inc., a legitimate hosting provider often abused by threat actors due to its free tier and rapid deployment capabilities. The domain resolved to IP address 216.198.79.131 and utilized a Google Trust Services SSL certificate to appear legitimate. Additionally, it appears on 2 security blocklists and has been blocked by Phishunt and OpenPhish, further validating its malicious status. If you visited netflixclone-mu-seven.vercel.app, immediately cease interaction with the site and do not enter any credentials or payment information. Check your Netflix account for unauthorized activity and enable multi-factor authentication. Scan your device for malware and report the incident to Netflix's official support channels. Avoid clicking links from unsolicited emails or messages, and always verify the legitimacy of URLs before entering sensitive data. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Vercel Inc. - IP: 216.198.79.131 ## Detection Status - VirusTotal: 22 vendors flagged - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["Phishunt", "OpenPhish"] ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/431972f5-55fe-4356-b5c5-80fae29bd967 - PhishDestroy: https://phishdestroy.io/domain/netflixclone-mu-seven.vercel.app/ - LLM endpoint: https://phishdestroy.io/domain/netflixclone-mu-seven.vercel.app/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/netflixclone-mu-seven.vercel.app/ Last updated: 2026-03-31