MALICIOUS — CRITICAL
insta-clone-app[.]vercel[.]app
18 of 91 security engines flagged the domain; the latest stored check returned HTTP 200.
- VirusTotal
- 18/91
- Blocklists
- No stored match
- Ketersediaan
- Terakhir diketahui aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
insta-clone-app.vercel.app — Terakhir diketahui aktif (HTTP 200). Peniruan identitas merek: Instagram; Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 18/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); PhishDestroy score 100/100. Registrar: Vercel.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Digest
insta-clone-app.vercel.app is classified critical with an evidence score of 100/100. 18 of 91 security engines flagged the domain. Registered 24 May 2026 via Vercel, hosted on 64.29.17.67 (Amazon.com, Inc., US). The latest stored check on 9 Aug 2026 returned HTTP 200.
Stored generated summary (templated)mistral · 13/07/2026
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
Analysis of insta-clone-app.vercel.app confirms it as an active credential-phishing domain targeting Instagram users. The domain, registered on May 24, 2026, resolves to IP 64.29.17.67, hosted by Vercel in the United States. Its SSL certificate is issued by Google Trust Services (WR1), a common feature in both legitimate and malicious sites, offering no inherent trust signal. The page title explicitly displays 'instagram', aligning with the known impersonation of the Instagram brand. Security vendors have flagged this domain, with 17 of 91 engines on VirusTotal detecting it as malicious, and it appears on at least one security blocklist. The domain returns an HTTP 200 status, indicating an operational webpage, and Gridinsoft assigns it a trust score of 0/100, further corroborating its malicious classification. While the exact phishing kit or backend infrastructure remains unconfirmed, the domain’s purpose is clearly defined as credential harvesting, based on its categorization as a credential-phishing site. Defenders should treat this domain as a high-risk threat, block it at the network level, and monitor for related indicators such as the resolving IP or associated SSL certificate issuer. Given its active status and direct targeting of a major social media platform, immediate mitigation is recommended to prevent user compromise.
Cakupan data12 recorded checks
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
Analisis VirusTotal
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.