instaclone-ecru[.]vercel[.]app
“Instagram clone”
instaclone-ecru.vercel.app — 隐形 · 可达. 品牌冒充:Instagram; 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 20/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 3 alerts; cloaking observed; PhishDestroy score 100/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies instaclone-ecru.vercel.app as an active crypto drainer phishing domain, currently classified under generic_phishing with an elevated risk level. This domain is designed to trick users into connecting cryptocurrency wallets to malicious smart contracts, resulting in unauthorized fund transfers. The site remains operational as of the latest assessment, with no evidence of takedown or remediation.
This domain was flagged by 12 of 95 VirusTotal security vendors, indicating a significant but not universal detection rate. It is registered through Vercel Inc., resolves to IP address 64.29.17.3, and holds a valid SSL certificate issued by Google Trust Services. While the exact creation date is not publicly disclosed, the domain's infrastructure and certificate suggest recent deployment. The presence of 12 detections on VirusTotal, combined with the use of a reputable hosting provider like Vercel, may contribute to a deceptive appearance of legitimacy. However, the domain's association with a known crypto drainer operation undermines any trust signals.
PhishDestroy advises users to avoid interacting with instaclone-ecru.vercel.app entirely. Do not connect wallets, enter private keys, or engage with any prompts on this site. Verify the domain's status on PhishDestroy before taking any further action. If you have already interacted with this domain, revoke any connected wallet permissions immediately and transfer remaining funds to a secure, isolated wallet. Monitor your accounts for unauthorized transactions and report any suspicious activity to your wallet provider or relevant authorities. Exercise heightened caution with domains hosted on Vercel or similar platforms, as threat actors often exploit legitimate services to host malicious content.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | instaclone-ecru.vercel.app |
malicious | Sinkholed |
| OpenDNS | instaclone-ecru.vercel.app |
phishing | Phishing Block |
| DNS4EU | instaclone-ecru.vercel.app |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。