folks-finance-dashboard[.]vercel[.]app
“Folks Finance Dashboard”
folks-finance-dashboard.vercel.app — Gizlenmiş · ulaşılabilir. Dolandırıcılık türü: Generic Phishing. Kanıt özeti: VirusTotal 12/91 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, ESET); Google Safe Browsing flagged; cloaking observed; PhishDestroy score 100/100. Kayıt kuruluşu: Vercel.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, folks-finance-dashboard.vercel.app, is actively flagged as a high-risk phishing site targeting users of Folks Finance, as indicated by its page title and Google Safe Browsing's social engineering classification. Infrastructure analysis reveals it is hosted on Vercel Inc.'s platform, resolving to IP 216.198.79.3 under AS16509 (Amazon.com, Inc.) in the US. The domain was registered on December 13, 2025, and remains operational with an HTTP 200 status, suggesting it is actively serving content. SSL certification is provided by Google Trust Services (WR1), and technologies detected include Node.js, React, Next.js, and Webpack, consistent with modern web applications but not inherently malicious.
Defenders should note that the domain appears on at least one security blocklist (PhishDestroy) and has a Gridinsoft trust score of 0/100, indicating no credibility. While 11 of 95 security vendors on VirusTotal flag this domain, the absence of additional context (e.g., specific payloads, redirect chains, or kit fingerprints) limits deeper classification. The combination of Vercel hosting, a recent registration date, and social engineering flags aligns with common phishing infrastructure patterns. No concrete evidence links this domain to a known phishing kit or campaign beyond the Folks Finance branding implied by the page title.
Recommended actions include blocking the domain at the DNS or proxy level, monitoring for related subdomains or IPs under the same ASN, and reviewing logs for connections from internal networks. If Folks Finance is a known service within your organization, user education and MFA enforcement are advised to mitigate credential harvesting risks. Further analysis of the site's content (e.g., login forms, API calls) would clarify the exact phishing mechanics, but such investigation should be conducted in a controlled environment to avoid exposure.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 6 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
Cloud platform for frontend deployment, optimized for Next.js.
JavaScript library for building user interfaces with component-based architecture.
React framework for production with hybrid static and server rendering.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Module bundler for modern JavaScript applications.
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of folks-finance-dashboard.vercel.app · checked Mar 2, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin