165tyesy[.]vercel[.]app
“Poczta - Najlepsza Poczta, największe załączniki - WP”
165tyesy.vercel.app — 隐形 · 可达 (HTTP 404). 证据摘要: VirusTotal 14/91 (BitDefender, CyRadar, ESET, Emsisoft, Fortinet); CF Radar malicious; cloaking observed; PhishDestroy score 97/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, 165tyesy.vercel.app, is flagged as an active credential harvesting phishing site designed to impersonate the WP Poczta email service. Analysis indicates the site presents a fraudulent login interface mimicking the legitimate WP Poczta platform, a tactic commonly employed to harvest user credentials. The risk level is classified as elevated due to the targeted nature of the campaign and the potential for significant data compromise among Polish-speaking users. Infrastructure analysis reveals the domain resolves to the IP address 216.198.79.3 and is registered through Vercel Inc., a platform frequently exploited for rapid deployment of phishing pages. Detection metrics from VirusTotal indicate that 13 out of 95 security vendors have flagged this domain as malicious, suggesting moderate consensus on its fraudulent nature. The page title, Poczta - Najlepsza Poczta, największe załączniki - WP, directly mirrors the branding of the legitimate WP Poczta service, further corroborating the impersonation attempt. The SSL certificate is issued by Google Trust Services, which, while providing encryption, does not validate the legitimacy of the site’s content or intent. Mitigation steps for this specific threat type include immediate blacklisting of the domain and associated IP address within organizational security policies. Network administrators should implement DNS filtering to block access to 165tyesy.vercel.app and monitor for any attempts to resolve this domain or its IP. End-users should be educated on recognizing phishing indicators, such as discrepancies in domain names (e.g., vercel.app vs. wp.pl) and the absence of multi-factor authentication prompts on login pages. Additionally, security teams are advised to conduct retrospective analysis of network logs to identify any prior interactions with this domain and reset credentials for potentially compromised accounts.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of 165tyesy.vercel.app · checked Jul 1, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。