netflix-orcin-six[.]vercel[.]app
“Deployment Unavailable”
netflix-orcin-six.vercel.app — Контент недоступний. Уособлення бренду: Netflix; Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 15 detections (engine total unavailable) (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 2 alerts; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Tucows.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged as a high‑risk brand‑impersonation campaign targeting Netflix. The fully qualified name netflix-orcin-six.vercel.app was registered on 21 February 2026 through Tucows Domains Inc. DNS resolution points to the Amazon Web Services address 216.198.79.67, which belongs to ASN 16509 (Amazon.com, Inc.) and is geolocated in the United States. An HTTPS endpoint is served using a Google Trust Services certificate (WR1), and the response includes HTTP status 451 with the page title “Deployment Unavailable”. Vercel hosting is identified, and the site enforces HSTS.
Google Safe Browsing classifies the URL as a social‑engineering threat, and PhishDestroy has already taken the site offline. VirusTotal analysis shows that 15 of 95 scanning engines have raised detections, and the domain appears on a single external blocklist. The combination of a recent registration date, AWS infrastructure, a valid Google certificate, and the presence of brand‑impersonation indicators suggests a deliberate attempt to exploit the Netflix brand.
Uncertainty remains regarding the exact payload or credential‑harvesting mechanisms because the site is currently unavailable and no page content has been captured. Defenders should block the domain at the DNS and proxy level, monitor outbound connections to the associated IP address, and update intrusion‑detection signatures to include the observed SSL fingerprint and HTTP 451 response pattern. Continuous re‑evaluation is recommended in case the actor re‑hosts the campaign on a different Vercel endpoint.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | netflix-orcin-six.vercel.app |
malicious | Sinkholed |
| DNS4EU | netflix-orcin-six.vercel.app |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of netflix-orcin-six.vercel.app · checked Mar 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога