auth-sectoral-3730[.]vercel[.]app
“Error”
auth-sectoral-3730.vercel.app — Прикритий · доступний. Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 3/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft); 1 external blocklist match (ScamSniffer); cloaking observed; PhishDestroy score 91/100. Реєстратор: Tucows.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain hosts a fake authentication portal designed to harvest user credentials. Visitors are presented with a login interface mimicking legitimate services, likely targeting corporate or financial accounts. The site employs obfuscation techniques to evade detection, including a generic 'Error' page title that may conceal malicious functionality upon interaction. Analysis indicates this is not a benign error page but a deliberate component of the phishing workflow, potentially redirecting victims to fraudulent input forms after initial engagement. Infrastructure analysis reveals the domain was registered on February 21, 2026, through Tucows Domains Inc., an unusually future-dated creation timestamp that may indicate domain generation algorithm usage or registry manipulation. It resolves to IP 64.29.17.3, hosted on Amazon Web Services (AS16509), and holds an SSL certificate issued by Google Trust Services. Security vendor detections currently stand at 3 out of 95 on VirusTotal, with the domain appearing on two independent blocklists. The combination of low detection rates and high-risk hosting patterns suggests targeted or evasive phishing operations. Users who visited this domain should immediately revoke any entered credentials, particularly for work-related or financial accounts. Check browser history for unexpected redirects to auth-sectoral-3730.vercel.app and monitor associated accounts for unauthorized activity. Network administrators should block the domain and IP 64.29.17.3 at perimeter security controls. The future-dated registration warrants additional scrutiny of related domains with similar naming patterns or creation timestamps, as this may indicate a broader campaign infrastructure.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога