netflix-clone-ivory-ten[.]vercel[.]app
“Netflix Clone”
netflix-clone-ivory-ten.vercel.app — İçerik kullanılamıyor. Marka kimliğine bürünme: Apple; Dolandırıcılık türü: Tech Support Scam. Kanıt özeti: VirusTotal 23/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. Kayıt kuruluşu: Tucows.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Analysis indicates a HIGH risk infrastructure associated with brand_impersonation targeting Apple, delivered through a deceptive “Netflix Clone” themed page. The domain is actively serving content consistent with credential harvesting and user deception.
Telemetry and registration signals reinforce malicious classification: VirusTotal reports 23/95 security vendors flagging the domain. The registration was created on February 21, 2026 and is managed through Tucows Domains Inc. The resolving infrastructure uses IP 64.29.17.67, geolocated in the United States under AS16509 (Amazon.com, Inc.). TLS issuance is attributed to Google Trust Services / WR1. Google Safe Browsing categorizes the domain as phishing, and it appears on at least 1 security blocklist, including detection by PhishDestroy. The current operational status is active. The landing page title is “Netflix Clone,” while threat intelligence indicates impersonation of Apple branding.
Mitigation should include immediate domain blocking at DNS and gateway layers, sinkholing of 64.29.17.67, and addition of indicators to enterprise threat feeds. Users should be warned against entering credentials or Apple IDs, as the page likely harvests authentication data. Security teams should correlate TLS certificate reuse, monitor Tucows-registered domains with similar naming patterns, and deploy browser-level phishing protection. Continuous monitoring is recommended due to active status and confirmed phishing classification.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | netflix-clone-ivory-ten.vercel.app |
malicious | Sinkholed |
| OpenDNS | netflix-clone-ivory-ten.vercel.app |
phishing | Phishing Block |
| DNS4EU | netflix-clone-ivory-ten.vercel.app |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of netflix-clone-ivory-ten.vercel.app · checked Mar 1, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin