dynamicsvg.plasmic.run
“Vercel Security Checkpoint”
dynamicsvg.plasmic.run — 마지막으로 알려진 활성 (HTTP 308). 브랜드 사칭: ["celer"]; 사기 유형: Impersonation. 증거 요약: VirusTotal 7/89 (BitDefender, CRDF, ESET, Forcepoint ThreatSeeker, G-Data); PhishDestroy score 81/100.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
증거 요약
dynamicsvg.plasmic.run is a subdomain of plasmic.run. PhishDestroy first observed the hostname on Sep 13, 2026. Stored content metadata identifies ["celer"] as the apparent target. The captured page title is “Vercel Security Checkpoint”. Page analysis recorded additional brand references to Celer. Stored page analysis classifies the content as impersonation. Current evidence score: 81/100 (critical).
One source contains a positive finding: VirusTotal. VirusTotal recorded 7 detections among 89 engines: BitDefender, CRDF, ESET, Forcepoint ThreatSeeker, G-Data, SOCRadar, Webroot on Sep 14, 2026 at 02:09 UTC. Non-positive and contextual checks: The separate external-blocklist snapshot contained no matches on Sep 20, 2026 at 14:20 UTC. Google Safe Browsing returned no flag on Sep 20, 2026 at 10:00 UTC. URLScan completed without a malicious verdict (score 0) on Sep 13, 2026 at 03:30 UTC.
HTTP 308 was recorded on Sep 20, 2026 at 10:13 UTC. At collection time, the hostname resolved to 216.150.16.1 on AS16509 (Amazon.com, Inc.). The IP and ASN identify shared Vercel edge infrastructure; the origin server is not established by this address. DOM analysis on Sep 13, 2026 at 02:20 UTC returned 78/100. The evidence archive retains 3 visual captures from PhishDestroy and URLScan. TLS metadata lists Let's Encrypt / YR1 as the certificate issuer with validity through Oct 12, 2026; checked Sep 13, 2026 at 01:02 UTC.
Stored content provides classification context, but only one source contains a positive finding.
Forensic History & Detection Timeline
-
Threat First Observed Sep 13, 2026 · 02:26 UTCDomain ingestion complete. Initial state is marked as alive pointing to IP
216.150.16.1.
위협 대응 Pipeline
공개 차단 목록 상태
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
Vercel
Scanner note: redirect: raw=redirect_308; http=308; via=http_proxy; location=https://dynamicsvg.plasmic.run/; server=Vercel
VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of dynamicsvg.plasmic.run · checked Sep 13, 2026
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.