seguridadincritada-weld[.]vercel[.]app
“Verificación de Desembolso | Banco Pichincha”
seguridadincritada-weld.vercel.app — Masqué · accessible. Type d'arnaque : Credential Phishing. Résumé des preuves: VirusTotal 19/94 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); Google Safe Browsing flagged; CF Radar malicious; cloaking observed; PhishDestroy score 100/100. Bureau d’enregistrement: Vercel.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
PhishDestroy identifies seguridadincritada-weld.vercel.app as an active credential theft campaign impersonating Banco Pichincha, a major Ecuadorian financial institution. The threat type is generic phishing, leveraging social engineering to trick victims into surrendering banking credentials under the guise of a 'Desembolso Verification' (Disbursement Verification) process. No drainer kit artifacts are associated with this domain in current feeds, indicating a focus on immediate credential harvesting rather than fund exfiltration frameworks.
This domain resolves to IP 64.29.17.3 and was registered through Vercel Inc., a legitimate cloud platform often abused for rapid deployment of phishing pages. VirusTotal confirms detection by 20 of 95 security vendors, with OpenPhish and Google Safe Browsing (GSB) flagging it under 'SOCIAL_ENGINEERING.' The domain appears on 1 security blocklist and holds a valid SSL certificate issued by Google Trust Services, increasing its deceptive credibility. These technical indicators confirm a high-risk infrastructure designed to evade casual scrutiny.
Current status shows an active campaign with the domain fully operational as of latest scans. Immediate response actions include domain takedown requests to Vercel and continued blocking via security platforms. Despite these efforts, the domain remains accessible and continues to receive traffic, posing a persistent risk to users unfamiliar with Banco Pichincha’s legitimate domains. Users are advised to verify URLs manually and report suspicious activity to their banking provider or via GSB’s reporting tools.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Technologies · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of seguridadincritada-weld.vercel.app · checked Apr 18, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif