verify-streamline-1162[.]vercel[.]app
“Error”
verify-streamline-1162.vercel.app — Прикритий · доступний. Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 3/91 (alphaMountain.ai, Kaspersky, LevelBlue); cloaking observed; PhishDestroy score 83/100. Реєстратор: Tucows.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, verify-streamline-1162.vercel.app, is currently under investigation for credential phishing activity. Analysis indicates it is actively targeting users to harvest login credentials, though no specific brand impersonation has been confirmed at this stage. The domain remains operational and unblocked by most security vendors, warranting further scrutiny. Infrastructure analysis reveals the domain resolves to IP address 64.29.17.3, hosted on Amazon.com, Inc. (AS16509) infrastructure in the United States. It was registered on February 21, 2026, through Tucows Domains Inc., an unusually future-dated creation that may suggest domain generation algorithm (DGA) usage or administrative error. The SSL certificate is issued by Google Trust Services (WR1), providing a false sense of legitimacy. Despite its recent creation, only 0 of 95 VirusTotal security vendors have flagged the domain, and it appears on a single security blocklist maintained by PhishDestroy. Current status confirms the domain remains active, serving an "Error" page title that may indicate cloaking or staging behavior. Given the low detection rate and future-dated registration, this domain exhibits high-risk characteristics typical of credential phishing campaigns. Organizations are advised to block the domain at the DNS or proxy level, monitor for connections to 64.29.17.3, and investigate any user interactions with verify-streamline-1162.vercel.app. Security teams should prioritize hunting for related IOCs, including the unique seed dd3e68, to identify potential compromise in their environments.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога