netflix-drab-nu[.]vercel[.]app
“Netflix”
netflix-drab-nu.vercel.app — Контент недоступний. Уособлення бренду: Netflix; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 19/91 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Vercel.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, netflix-drab-nu.vercel.app, is identified as a high-risk credential theft operation impersonating Netflix. The page title explicitly displays 'Netflix,' and the site is designed to harvest user login credentials through a fraudulent interface mimicking the legitimate streaming platform. No crypto drainer kit signatures were detected, but the domain exhibits classic indicators of a credential harvesting phishing campaign, including cloned branding and input forms for sensitive data submission. Analysis indicates the domain resolves to IP address 216.198.79.67 and was registered through Vercel Inc. on June 12, 2026, though the discrepancy in the creation date suggests potential manipulation or misreporting. The domain appears on one security blocklist and is flagged by 19 out of 95 security vendors on VirusTotal. The SSL certificate is issued by Google Trust Services (WR1), which may lend a superficial appearance of legitimacy. Google Safe Browsing does not currently list the domain, but the presence on PhishDestroy’s blocklist confirms its malicious classification. As of the latest verification, netflix-drab-nu.vercel.app remains active and continues to pose a significant risk to users. Response actions include submission to security blocklists and automated takedown requests, though the domain’s persistence suggests evasion tactics or delayed enforcement. Users are advised to avoid interacting with the site, verify URLs before entering credentials, and report any suspicious activity to their security teams. Organizations should update web filters to block the domain and its associated IP address to mitigate exposure.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога