netflix-orcin-six[.]vercel[.]app
“Deployment Unavailable”
netflix-orcin-six.vercel.app — 内容不可用. 品牌冒充:Netflix; 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 15 detections (engine total unavailable) (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 2 alerts; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. 注册商: Tucows.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain is flagged as a high‑risk brand‑impersonation campaign targeting Netflix. The fully qualified name netflix-orcin-six.vercel.app was registered on 21 February 2026 through Tucows Domains Inc. DNS resolution points to the Amazon Web Services address 216.198.79.67, which belongs to ASN 16509 (Amazon.com, Inc.) and is geolocated in the United States. An HTTPS endpoint is served using a Google Trust Services certificate (WR1), and the response includes HTTP status 451 with the page title “Deployment Unavailable”. Vercel hosting is identified, and the site enforces HSTS.
Google Safe Browsing classifies the URL as a social‑engineering threat, and PhishDestroy has already taken the site offline. VirusTotal analysis shows that 15 of 95 scanning engines have raised detections, and the domain appears on a single external blocklist. The combination of a recent registration date, AWS infrastructure, a valid Google certificate, and the presence of brand‑impersonation indicators suggests a deliberate attempt to exploit the Netflix brand.
Uncertainty remains regarding the exact payload or credential‑harvesting mechanisms because the site is currently unavailable and no page content has been captured. Defenders should block the domain at the DNS and proxy level, monitor outbound connections to the associated IP address, and update intrusion‑detection signatures to include the observed SSL fingerprint and HTTP 451 response pattern. Continuous re‑evaluation is recommended in case the actor re‑hosts the campaign on a different Vercel endpoint.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | netflix-orcin-six.vercel.app |
malicious | Sinkholed |
| DNS4EU | netflix-orcin-six.vercel.app |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of netflix-orcin-six.vercel.app · checked Mar 2, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。