casefb567629-utbg[.]vercel[.]app
“Deployment Unavailable”
casefb567629-utbg.vercel.app — 内容不可用. 证据摘要: VirusTotal 14/93 (Criminal IP, alphaMountain.ai, Bfore.Ai PreCrime, BitDefender, CyRadar); URLQuery 3 alerts; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 92/100. 注册商: Tucows.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain casefb567629-utbg.vercel.app indicates a high-risk phishing campaign leveraging Vercel's hosting infrastructure. The domain, registered through Tucows Domains Inc. on February 21, 2026, resolves to IP address 64.29.17.67, hosted on Amazon.com, Inc.'s AS16509 network in the United States. At the time of assessment, the domain returned an HTTP 451 status code and displayed a 'Deployment Unavailable' page title, though this may reflect takedown efforts rather than original malicious content. Security vendor detections on VirusTotal show 14 of 93 engines flagging the domain, while Google Safe Browsing explicitly classifies it as social engineering. The domain appears on at least one security blocklist, specifically PhishDestroy.
SSL certification is provided by Google Trust Services (WR1), and HTTP Strict Transport Security (HSTS) is enforced, which may complicate user warnings despite the malicious intent. Infrastructure analysis reveals the use of Vercel's platform, a common vector for rapidly deployed phishing sites due to its free tier and ease of use. The registrar, Tucows, is frequently observed in abuse reports but lacks real-time enforcement capabilities. The IP address has no prior associations with confirmed benign domains in recent threat intelligence feeds, though historical context remains unverified. Defenders should treat this domain as actively malicious until further analysis confirms remediation.
Network-level blocking of 64.29.17.67 and domain-level filtering are recommended. Given the social engineering classification, user education on recognizing phishing attempts remains critical. The domain's current offline status suggests takedown efforts, but similar infrastructure may reappear under different subdomains or IPs. Continuous monitoring of Vercel-hosted subdomains with randomized naming patterns is advised.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | casefb567629-utbg.vercel.app |
malicious | Sinkholed |
| Quad9 DNS | casefb567629-utbg.vercel.app |
malicious | Sinkholed |
| DNS4EU | casefb567629-utbg.vercel.app |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of casefb567629-utbg.vercel.app · checked Mar 2, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。