espressopiloto[.]vercel[.]app
“ESPRESSO PILOTO”
espressopiloto.vercel.app — Masqué · accessible. Usurpation de l'identité de la marque : Scroll; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 2/93 (ChainPatrol, alphaMountain.ai); cloaking observed; PhishDestroy score 61/100. Bureau d’enregistrement: Vercel.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Analysis indicates that espressopiloto.vercel.app is associated with a high-risk brand impersonation threat targeting scroll. The site is currently active and presents itself with the page title "ESPRESSO PILOTO". Infrastructure characteristics and threat intelligence data suggest potential use in credential harvesting, deceptive user interaction, or other forms of impersonation intended to exploit trust associated with the targeted brand. The domain should be treated as untrusted until its legitimacy can be independently verified.
Evidence collected from multiple intelligence sources shows that the domain remains active and resolves to IP address 216.198.79.195 located in the US under AS16509 Amazon.com, Inc. The domain was created on January 28, 2020 and is registered through Vercel Inc. The SSL certificate is issued by Google Trust Services / WR1. Threat intelligence records indicate appearance on 3 security blocklists, and the domain is blocked by PhishDestroy, MetaMask, and SEAL. Detection data shows that VirusTotal reports 2/95 security vendors flagging the domain. While the detection ratio is not universally high, the combination of active brand impersonation indicators, existing blocklist presence, and continued availability increases overall risk exposure.
Users who interacted with espressopiloto.vercel.app should consider any submitted information potentially exposed. Recommended actions include changing credentials associated with any accounts used during the visit, reviewing account activity for unauthorized access, enabling multi-factor authentication where available, and monitoring for suspicious communications or transaction requests. Security teams should record the domain, page title, IP address, and associated indicators for detection and response purposes. Access to the domain should be restricted pending further investigation, and any related authentication tokens or session data should be considered for revocation as a precautionary measure.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of espressopiloto.vercel.app · checked Mar 2, 2026
Analyse de la configuration du site
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif