espressopiloto[.]vercel[.]app
“ESPRESSO PILOTO”
espressopiloto.vercel.app — Encoberto · alcançável. Representação da marca: Scroll; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 2/93 (ChainPatrol, alphaMountain.ai); cloaking observed; PhishDestroy score 61/100. Registrador: Vercel.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis indicates that espressopiloto.vercel.app is associated with a high-risk brand impersonation threat targeting scroll. The site is currently active and presents itself with the page title "ESPRESSO PILOTO". Infrastructure characteristics and threat intelligence data suggest potential use in credential harvesting, deceptive user interaction, or other forms of impersonation intended to exploit trust associated with the targeted brand. The domain should be treated as untrusted until its legitimacy can be independently verified.
Evidence collected from multiple intelligence sources shows that the domain remains active and resolves to IP address 216.198.79.195 located in the US under AS16509 Amazon.com, Inc. The domain was created on January 28, 2020 and is registered through Vercel Inc. The SSL certificate is issued by Google Trust Services / WR1. Threat intelligence records indicate appearance on 3 security blocklists, and the domain is blocked by PhishDestroy, MetaMask, and SEAL. Detection data shows that VirusTotal reports 2/95 security vendors flagging the domain. While the detection ratio is not universally high, the combination of active brand impersonation indicators, existing blocklist presence, and continued availability increases overall risk exposure.
Users who interacted with espressopiloto.vercel.app should consider any submitted information potentially exposed. Recommended actions include changing credentials associated with any accounts used during the visit, reviewing account activity for unauthorized access, enabling multi-factor authentication where available, and monitoring for suspicious communications or transaction requests. Security teams should record the domain, page title, IP address, and associated indicators for detection and response purposes. Access to the domain should be restricted pending further investigation, and any related authentication tokens or session data should be considered for revocation as a precautionary measure.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Análise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of espressopiloto.vercel.app · checked Mar 2, 2026
Análise da configuração do site
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo