instagram-clone-eta-one[.]vercel[.]app
“Instagram App 2.0”
instagram-clone-eta-one.vercel.app — Não verificado. Representação da marca: Instagram; Tipo de golpe: Social Media Phishing. Resumo das evidências: VirusTotal 18/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); CF Radar malicious; PhishDestroy score 100/100. Registrador: Tucows.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, instagram-clone-eta-one.vercel.app, is currently engaged in brand impersonation targeting Instagram, a high-profile social media platform. The threat type has been classified as brand impersonation, with the page explicitly titled 'Instagram App 2.0' to deceive users into believing it is an official or updated version of the legitimate service. As of the latest assessment, the domain remains active and continues to resolve, posing an ongoing risk to unsuspecting users. Analysis indicates that the domain is flagged by 21 of 95 security vendors on VirusTotal, a significant detection rate that underscores its malicious nature. It was registered through Tucows Domains Inc. on February 21, 2026, and resolves to the IP address 216.198.79.195, which is geolocated in the United States under AS16509, an autonomous system associated with a major cloud provider. The domain appears on one security blocklist, specifically PhishDestroy, and utilizes an SSL certificate issued by Google Trust Services (WR1). Despite its recent creation date, the infrastructure exhibits characteristics typical of phishing campaigns, including the use of a content delivery network to obscure its true origin. The current status of instagram-clone-eta-one.vercel.app remains active, and users are advised to exercise extreme caution. Organizations should consider implementing network-level blocks for the domain and its associated IP address to prevent access. End-users are urged to verify the authenticity of any Instagram-related communications or login portals by cross-referencing official domain names and checking for SSL certificate validity. In cases of suspected compromise, immediate password resets and multi-factor authentication enforcement are recommended. Security teams should monitor for similar domains registered through the same registrar or resolving to the identified IP range, as these may indicate additional components of the same campaign.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Análise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of instagram-clone-eta-one.vercel.app · checked Mar 1, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo