doublezero-rewards[.]vercel[.]app
doublezero-rewards.vercel.app için kimlik avı ve güvenlik kontrolü
“DoubleZero Contributor Rewards Management”
doublezero-rewards.vercel.app — Gizlenmiş · ulaşılabilir (HTTP 200). Marka kimliğine bürünme: MetaMask; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 3/91 (ChainPatrol, alphaMountain.ai, Forcepoint ThreatSeeker); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 98/100. Kayıt kuruluşu: Vercel.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies doublezero-rewards.vercel.app as an active fake rewards phishing domain posing elevated risk to end users.
This domain was flagged with a 2/95 detection rate on VirusTotal, registered through Vercel Inc., resolving to IP 64.29.17.3, and secured with a Google Trust Services SSL certificate. The domain appears on 2 separate security blocklists and is actively blocked by SEAL and MetaMask detection systems. Given the presence of a deceptive 'rewards' lure, the combination of low VirusTotal coverage and known blocklist inclusion elevates the risk profile for unsuspecting visitors.
The specific threat is a fake rewards phishing domain designed to mimic legitimate incentive programs and harvest user credentials or financial data. Technical indicators include the use of a trusted registry (Vercel) to host malicious content, combined with a valid SSL certificate from Google Trust Services to appear legitimate. Despite low detection coverage (2/95), the domain is flagged by high-confidence security systems including SEAL and MetaMask, indicating active malicious behavior. The IP address (64.29.17.3) and blocklist presence further support its classification as a phishing operation.
To mitigate risk from fake rewards phishing domains like doublezero-rewards.vercel.app, users should avoid clicking unverified links promising rewards or financial incentives. Always verify domains by checking for HTTPS, correct spelling, and official contact information. Organizations should deploy DNS-based threat intelligence feeds (e.g., SEAL) and browser extensions (e.g., MetaMask) that block known phishing domains. Security teams should investigate any internal access to this domain for signs of credential compromise or lateral movement.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 6 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
JavaScript library for building user interfaces with component-based architecture.
Cloud platform for frontend deployment, optimized for Next.js.
React framework for production with hybrid static and server rendering.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Module bundler for modern JavaScript applications.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of doublezero-rewards.vercel.app · checked Apr 18, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin