netflix-clone-eight-blond[.]vercel[.]app
“Clone of Netflix”
netflix-clone-eight-blond.vercel.app — Контент недоступен. Олицетворение бренда: Apple; Тип мошенничества: Tech Support Scam. Сводка доказательств: VirusTotal 21/94 (ADMINUSLabs, Criminal IP, BitDefender, CyRadar, ESET); URLQuery 4 alerts; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. Регистратор: Vercel.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain netflix-clone-eight-blond.vercel.app is assessed as a high-risk brand impersonation infrastructure designed to deceive users by mimicking legitimate services while targeting Apple brand trust. The observed configuration indicates a credential phishing intent, where users may be lured into entering sensitive account information through a deceptive interface presented as a legitimate platform. Despite the misleading page title referencing a different service, threat intelligence indicates Apple impersonation as the primary targeting vector, suggesting cross-brand baiting to increase victim engagement and reduce suspicion. Such domains are typically used in staged phishing campaigns, where initial landing pages establish trust before redirecting or harvesting credentials.
This infrastructure is supported by multiple detection signals: VirusTotal classification shows 21/95 security vendors flagging the domain. The domain was registered through Vercel Inc. and created on March 08, 2026. It currently appears on 1 security blocklist, indicating active monitoring and confirmed malicious behavior. Network resolution points to IP address 216.198.79.67, hosted under US-based AS16509 Amazon.com, Inc. The SSL certificate is issued by Google Trust Services under WR1 profile, suggesting automated certificate provisioning common in rapidly deployed phishing infrastructure. These combined indicators show a recently created, actively hosted environment with cross-provider infrastructure usage typical of scalable phishing operations.
If a user has visited or interacted with this domain, immediate risk mitigation is required. Users should avoid entering any credentials or personal data and should assume any information submitted may be compromised. Passwords reused across other services should be changed immediately, and multi-factor authentication should be enabled where possible. Endpoint scans should be performed to detect potential malware or persistence mechanisms. Additionally, network-level monitoring for unusual login attempts or unauthorized access should be reviewed. Organizations should block the domain at DNS, proxy, and endpoint layers and add the indicators (domain, IP 216.198.79.67) to threat intelligence feeds. Given the active status of the infrastructure, continued monitoring is recommended to detect potential domain rotation or related impersonation clusters.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | netflix-clone-eight-blond.vercel.app |
malicious | Sinkholed |
| OpenDNS | netflix-clone-eight-blond.vercel.app |
phishing | Phishing Block |
| Quad9 DNS | netflix-clone-eight-blond.vercel.app |
malicious | Sinkholed |
| DNS4EU | netflix-clone-eight-blond.vercel.app |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 2 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of netflix-clone-eight-blond.vercel.app · checked Mar 10, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание