easy-banking-rho[.]vercel[.]app
“Easybank landing page”
easy-banking-rho.vercel.app — Неперевірений. Уособлення бренду: Genericbanking; Тип шахрайства: Banking Phishing. Зведення доказів: VirusTotal 16/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Ermes); URLQuery 6 det.; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Реєстратор: Tucows.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain easy-banking-rho.vercel.app is currently identified as a high-risk credential theft threat. This domain is hosting a webpage titled 'Easybank landing page', posing as a legitimate banking service to deceive users into revealing sensitive information. The operation appears aligned with typical banking phishing activities, aimed at harvesting credentials from unwary users. There is no specific indication of a crypto drainer kit being employed in this campaign.
Technical indicators confirm this domain is flagged by 20 out of 95 security vendors on the VirusTotal platform, evidencing significant detection and acknowledgment of its threat potential. The domain, registered through Tucows Domains Inc., was created on February 21, 2026, suggesting it is relatively new yet already active in malicious activities. The domain resolves to the IP address 64.29.17.131, located in the United States under Amazon AS16509. Additionally, the SSL certificate is issued by Google Trust Services / WR1. It appears on two security blocklists: PhishDestroy and PhishingDB.
The current status of the domain is active, presenting a continuing risk of credential theft. Immediate response actions should include blocking the domain through network security appliances and informing users of the ongoing threat. It is also advisable to monitor for any further developments or related domains emerging from the same IP address. Maintaining vigilance against such phishing attempts is critical to protecting sensitive information from being harvested by malicious actors.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of easy-banking-rho.vercel.app · checked Mar 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога