vikiflix[.]netlify[.]app
“502 Bad Gateway”
证据摘要
This domain, vikiflix.netlify.app, is identified as a high-risk credential theft phishing site designed to harvest user login credentials through deceptive login portals. Analysis indicates the infrastructure was configured to mimic legitimate streaming or subscription services, likely exploiting brand familiarity to trick victims into entering sensitive account details. No direct association with a specific brand or drainer kit was confirmed, though the operational pattern aligns with credential harvesting campaigns targeting entertainment or media platforms. The domain exhibits no overt cryptocurrency-related functionality, distinguishing it from wallet-drainer schemes. Infrastructure analysis reveals the domain was registered through Netlify on March 04, 2026, an unusually future-dated creation timestamp that may indicate automated or fraudulent registration practices. It resolves to the IP address 63.176.8.218, hosted on infrastructure belonging to Amazon.com, Inc. (AS16509) in Germany. The domain is flagged by Google Safe Browsing for phishing activity and appears on one security blocklist. VirusTotal reports 22 out of 95 security vendors detecting the domain as malicious, with detections spanning phishing, fraud, and social engineering categories. The SSL certificate, issued by DigiCert Inc (DigiCert Global G2 TLS RSA SHA256 2020 CA1), provides encrypted connections but does not mitigate the underlying fraudulent intent. As of the latest assessment, vikiflix.netlify.app has been taken offline, returning a 502 Bad Gateway error, suggesting either voluntary takedown, hosting provider intervention, or backend infrastructure failure. Despite its current inactive status, the domain remains a residual threat due to cached DNS records, browser history entries, or potential re-activation on alternative hosting. Users who interacted with the site prior to its takedown should immediately reset credentials for any accounts entered, enable multi-factor authentication, and monitor for unauthorized access. Organizations are advised to update web filtering rules to block the domain and its associated IP, while security teams should investigate logs for prior connections to 63.176.8.218 or related Netlify-hosted subdomains.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | vikiflix.netlify.app |
malicious | Sinkholed |
| OpenDNS | vikiflix.netlify.app |
phishing | Phishing Block |
| DNS4EU | vikiflix.netlify.app |
malicious | Sinkholed |
| Quad9 DNS | vikiflix.netlify.app |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
检测时间线
-
VirusTotal
0 → 18
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
-
VirusTotal
18 → 21
-
VirusTotal
22 → 23
-
域名状态
可访问 → 无法访问
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of vikiflix.netlify.app · checked Mar 4, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控