netflix-clone-five-iota[.]vercel[.]app
“Netflix”
netflix-clone-five-iota.vercel.app — Ammantato · raggiungibile. Simulazione del marchio: Netflix; Tipo di truffa: Generic Phishing. Riepilogo delle prove: VirusTotal 24/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; cloaking observed; PhishDestroy score 100/100. Registrar: Vercel.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain is classified as a high-risk credential harvesting site targeting users of a major streaming platform. Analysis indicates it is designed to impersonate the official login interface of Netflix, likely to capture sensitive user credentials such as email addresses and passwords. The threat type is confirmed as generic phishing with a focus on credential theft, a common vector for account takeovers and subsequent fraudulent activity. Infrastructure analysis reveals the domain netflix-clone-five-iota.vercel.app is registered through Vercel Inc. and currently resolves to the IP address 216.198.79.195. The domain was created on June 12, 2026, and remains active despite being flagged by 24 out of 95 security vendors on VirusTotal. It is blocked by at least one security blocklist and is explicitly labeled as phishing by Google Safe Browsing. The SSL certificate is issued by Google Trust Services under the identifier WR1, which does not mitigate the malicious nature of the domain. Mitigation steps for this threat include immediate blocking of the domain and its resolving IP address at the network perimeter. Security teams should deploy indicators of compromise (IOCs) such as the domain, IP, and SSL certificate fingerprint into endpoint detection and response (EDR) systems and security information and event management (SIEM) solutions. Users who may have interacted with the domain should be instructed to reset their credentials on the legitimate platform using multi-factor authentication (MFA) and monitor their accounts for unauthorized activity. Organizations should also review logs for any connections to 216.198.79.195 or attempts to access netflix-clone-five-iota.vercel.app to identify potentially compromised accounts.
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | netflix-clone-five-iota.vercel.app |
malicious | Sinkholed |
| OpenDNS | netflix-clone-five-iota.vercel.app |
phishing | Phishing Block |
| DNS4EU | netflix-clone-five-iota.vercel.app |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 2 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com Confidenza al 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confidenza al 100%Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo