new36-3-1-766[.]vercel[.]app
“Web Mail”
Stored detection
Cloaking alert
- Cloaking type
content_split- Cloaking score
- 1/6
Evidence Summary
This domain, new36-3-1-766.vercel.app, is a credential harvesting phishing site targeting enterprise and personal email users. The page title 'Web Mail' and infrastructure hosted on Vercel Inc. suggest an attempt to mimic legitimate webmail login portals, tricking users into submitting usernames, passwords, and potentially multi-factor authentication codes. The domain is designed to harvest sensitive authentication credentials for subsequent unauthorized access to email accounts, financial systems, or corporate networks. Analysis indicates the domain is flagged by 14 out of 95 security vendors on VirusTotal, including detections for phishing and malicious content. Infrastructure analysis reveals the domain resolves to the IP address 216.198.79.3, a host previously associated with phishing campaigns. The domain is registered through Vercel Inc., a platform commonly abused for rapid deployment of phishing pages due to its ease of use and free hosting options. Google Safe Browsing has also classified this domain as phishing, reinforcing its malicious intent. No legitimate creation date or historical context is available, further indicating its disposable nature for short-term attacks. Users who have visited new36-3-1-766.vercel.app or entered credentials on the site should immediately reset passwords for any accounts accessed from the same device or network. Enable multi-factor authentication on all critical accounts to mitigate unauthorized access. Scan the device for malware, as phishing pages may deploy additional payloads. Report the incident to internal security teams or relevant authorities to support takedown efforts. Monitor financial and communication accounts for signs of compromise, such as unauthorized transactions or sent emails. Avoid reusing passwords across platforms to limit the impact of credential exposure.
Data Coverage
Network Security Intelligence
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 12, 2026
10 monitored external feeds No match
Detection timeline
-
Domain status
Reachable → Unreachable
Technologies
9 high-confidence technologies identified
VirusTotal Analysis
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive