premium0peanseamint4[.]vercel[.]app
premium0peanseamint4.vercel.app — مغطى بعباءة · يمكن الوصول إليه. نوع الاحتيال: Crypto Drainer. ملخص الأدلة: VirusTotal 11/92 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Emsisoft); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 83/100. مسجّل النطاق: Vercel.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, premium0peanseamint4.vercel.app, operates as an active crypto drainer phishing infrastructure designed to illicitly extract cryptocurrency from compromised digital wallets. The threat specifically targets users through deceptive interfaces mimicking legitimate wallet or token approval prompts, tricking victims into authorizing transactions that transfer assets to attacker-controlled addresses. Analysis indicates the domain is engineered to exploit trust in decentralized finance (DeFi) platforms, leveraging social engineering tactics to bypass security measures in browser-based wallets. Infrastructure analysis reveals the domain resolves to the IP address 64.29.17.195, hosted under Vercel Inc., with an SSL certificate issued by Google Trust Services (WR1). The domain currently appears on three security blocklists, and VirusTotal reports detection by 7 out of 95 security vendors, confirming its malicious classification. The page title, 'Deployment Unavailable,' suggests an attempt to obfuscate its true purpose, potentially indicating a placeholder or fallback state for the phishing kit. The unique seed identifier ed3751 may correlate with specific campaign configurations or tracking mechanisms used by the threat actors. Users who have interacted with premium0peanseamint4.vercel.app should immediately revoke any suspicious wallet approvals or token allowances granted during the encounter. It is critical to disconnect the wallet from all connected decentralized applications (dApps) and transfer remaining assets to a new, secure wallet address. Victims should also monitor their transaction history for unauthorized transfers and report the incident to relevant blockchain security platforms for further analysis. Given the high-risk classification, any credentials or private keys exposed to this domain should be considered compromised and discarded.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of premium0peanseamint4.vercel.app · checked May 16, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب