mintingnow-opnsea29[.]vercel[.]app
“Deployment Unavailable”
mintingnow-opnsea29.vercel.app — المحتوى غير متوفر. نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 13/93 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, ESET); 4 external blocklist matches; CF Radar malicious; PhishDestroy score 89/100. مسجّل النطاق: Tucows.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of mintingnow-opnsea29.vercel.app shows a high‑risk crypto‑drainer operation that was taken offline prior to the report date of July 23, 2026. The domain was registered on February 21, 2026 through Tucows Domains Inc. and resolves to IP address 216.198.79.195, an Amazon.com, Inc. (AS16509) host located in the United States. The site presented the page title "Deployment Unavailable" and returned HTTP status code 451, indicating restricted access. TLS termination is provided by Google Trust Services under the WR1 certificate, and the hosting stack includes Vercel with HTTP Strict Transport Security enabled, suggesting a legitimate cloud platform was abused for malicious purposes.
The domain appears on five independent security blocklists, including PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura, confirming consensus among threat‑intel feeds that the site is associated with a crypto scam. VirusTotal scans reported 13 detections out of 93 security vendors, reinforcing the malicious classification. Although the site is currently offline, its infrastructure—particularly the Amazon‑hosted IP and Vercel deployment—provides a reusable template for future campaigns.
Defenders should proactively block the IP 216.198.79.195 and add the fully qualified domain name to internal and third‑party blocklists, monitor DNS queries for resurrection attempts, and enforce strict egress controls to prevent outbound connections to the host. Continuous re‑scanning of the domain and its IP range is advised to catch any re‑deployment under new subdomains or alternate certificates. The evidence suggests the domain was leveraged to lure cryptocurrency users into submitting private keys or signing transactions, a hallmark of crypto‑drainer scams, and the high detection count warrants immediate remediation.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of mintingnow-opnsea29.vercel.app · checked Mar 2, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب