congenial-eureka-theta[.]vercel[.]app
“Naver Sign in”
congenial-eureka-theta.vercel.app — Контент недоступен. Олицетворение бренда: Facebook; Тип мошенничества: Social Media Phishing. Сводка доказательств: VirusTotal 23/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. Регистратор: Tucows.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain congenial-eureka-theta.vercel.app is confirmed as a high-risk brand impersonation phishing site, currently active. It impersonates Facebook, which has been a common target for phishing attacks due to its widespread user base and valuable login credentials.
Analysis indicates that the domain has been flagged by 23 of 95 security vendors on VirusTotal, suggesting a significant level of threat. It is registered through Tucows Domains Inc. and resolves to the IP address 216.198.79.195, which is located in the US and associated with AS16509 Amazon.com, Inc. The domain was created on February 21, 2026, and is currently listed on 1 security blocklist. Additionally, Google Safe Browsing has marked the domain as phishing, and it is blocked by PhishDestroy. The SSL certificate is issued by Google Trust Services / WR1, which may lend a false sense of security to potential victims. The page title 'Naver Sign in' suggests an attempt to mislead users into believing they are accessing a legitimate Naver service, rather than a Facebook login page.
The domain remains active and poses a high risk to users. Immediate action is recommended to block this domain at the network level and educate users about the potential for brand impersonation attacks. Security teams should also monitor for related infrastructure and consider implementing more stringent security controls, such as multi-factor authentication, to protect against credential theft.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | congenial-eureka-theta.vercel.app |
malicious | Sinkholed |
| OpenDNS | congenial-eureka-theta.vercel.app |
phishing | Phishing Block |
| DNS4EU | congenial-eureka-theta.vercel.app |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 4 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100% уверенностиjQuery CDN is a way to include jQuery in your website without actually downloading and keeping it your website's folder.
code.jquery.com 100% уверенностиjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of congenial-eureka-theta.vercel.app · checked Mar 2, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание