verify-streamline-1162[.]vercel[.]app
“Error”
verify-streamline-1162.vercel.app — 隐形 · 可达. 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 3/91 (alphaMountain.ai, Kaspersky, LevelBlue); cloaking observed; PhishDestroy score 83/100. 注册商: Tucows.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, verify-streamline-1162.vercel.app, is currently under investigation for credential phishing activity. Analysis indicates it is actively targeting users to harvest login credentials, though no specific brand impersonation has been confirmed at this stage. The domain remains operational and unblocked by most security vendors, warranting further scrutiny. Infrastructure analysis reveals the domain resolves to IP address 64.29.17.3, hosted on Amazon.com, Inc. (AS16509) infrastructure in the United States. It was registered on February 21, 2026, through Tucows Domains Inc., an unusually future-dated creation that may suggest domain generation algorithm (DGA) usage or administrative error. The SSL certificate is issued by Google Trust Services (WR1), providing a false sense of legitimacy. Despite its recent creation, only 0 of 95 VirusTotal security vendors have flagged the domain, and it appears on a single security blocklist maintained by PhishDestroy. Current status confirms the domain remains active, serving an "Error" page title that may indicate cloaking or staging behavior. Given the low detection rate and future-dated registration, this domain exhibits high-risk characteristics typical of credential phishing campaigns. Organizations are advised to block the domain at the DNS or proxy level, monitor for connections to 64.29.17.3, and investigate any user interactions with verify-streamline-1162.vercel.app. Security teams should prioritize hunting for related IOCs, including the unique seed dd3e68, to identify potential compromise in their environments.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。