netflix-clone-gold-beta[.]vercel[.]app
“Netflix”
netflix-clone-gold-beta.vercel.app — Encoberto · alcançável. Representação da marca: Netflix; Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 25/94 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; cloaking observed; PhishDestroy score 100/100. Registrador: Vercel.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain netflix-clone-gold-beta.vercel.app is assessed as a high-risk credential theft infrastructure impersonating Netflix. The page title explicitly displays "Netflix", indicating brand impersonation intended to deceive users into submitting login credentials. The configuration suggests a cloned streaming portal interface designed to harvest authentication data, consistent with generic phishing kits hosted on rapid-deployment platforms.
Technical intelligence shows multiple corroborating indicators: VirusTotal detection ratio is 24/95 security vendors flagging malicious activity. The domain was created on April 08, 2026 and is registered through Vercel Inc., leveraging cloud hosting infrastructure. It resolves to IP 216.198.79.131 located in the United States under Vercel infrastructure. The SSL certificate is issued by Google Trust Services (WR1), indicating automated certificate provisioning. Google Safe Browsing explicitly flags the domain as phishing. Additionally, it appears on 1 security blocklist and is blocked by PhishDestroy, reinforcing consensus-based detection.
At the time of analysis, the domain remains active, meaning the phishing page is still reachable and capable of capturing user credentials. The combination of brand impersonation, high detection ratio, and active hosting significantly elevates risk exposure. Immediate mitigation actions include blocking the domain at DNS and web proxy layers, adding the IP 216.198.79.131 to threat intelligence feeds, and deploying user awareness warnings for fake Netflix login pages. Continuous monitoring is recommended due to the ease of redeployment on Vercel infrastructure. Residual risk remains high as attackers can rapidly rotate subdomains and reissue certificates, sustaining credential theft campaigns.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | netflix-clone-gold-beta.vercel.app |
malicious | Sinkholed |
| OpenDNS | netflix-clone-gold-beta.vercel.app |
phishing | Phishing Block |
| DNS4EU | netflix-clone-gold-beta.vercel.app |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Casino / Gambling License Verification
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of netflix-clone-gold-beta.vercel.app · checked Apr 8, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo