dashboard-opensea.idcapital[.]top
Forensic brief
Read full brief
PhishDestroy identifies dashboard-opensea.idcapital.top as an active crypto drainer masquerading as OpenSea. This domain, created on December 10, 2020, is currently operational and has been confirmed as malicious through multiple security layers. This domain exhibits clear indicators of compromise, including a flagging rate of 4/95 VirusTotal vendors, a low trust score across security platforms, and presence on two security blocklists.
The domain resolves to IP address 50.31.176.165 and was registered through PDR Ltd. d/b/a PublicDomainRegistry.com. Notably, it holds a valid SSL certificate issued by Let's Encrypt, which may lend it an air of legitimacy to unsuspecting users. The domain's primary objective is to deceive visitors into connecting crypto wallets under the guise of legitimate OpenSea services, enabling unauthorized fund transfers.
Given its confirmed malicious status, users are strongly advised to avoid interacting with dashboard-opensea.idcapital.top. Security controls such as MetaMask and SEAL have already blocked access to this domain, indicating its widespread recognition as a threat. To ensure safety, verify any suspicious links or domains through PhishDestroy before engagement.
Organizations should update blocklists with this domain and its associated IP address to prevent accidental exposure. Continuous monitoring for similar impersonation attempts is recommended due to the evolving tactics of threat actors targeting cryptocurrency platforms.
Threat response pipeline
Cloudflare Radar
VirusTotal
Forensic Evidence CollectionEvidence capture
Domain Intelligence
PDR Ltd.
Technical details
Public blocklist status
Technologies
Technologies · 2 identified
VirusTotal consensus
Aggregated detection across 95 security vendors.
Site performance
Site performance analysis
Google PageSpeed Insights — mobile audit of dashboard-opensea.idcapital.top
Evidence & external reports
Were you affected by this site?
Were You Affected?
Recommendations & Advice for Victims
- Do not pay anything else. Recovery agents demanding upfront fees are a second-stage scam.
- Disconnect compromised wallets. Move remaining funds to a fresh seed phrase generated offline.
- Preserve evidence. Screenshot transactions, save URLs, archive emails — chain-of-custody matters for prosecution.
- Report to authorities (see section 15 below) — even small reports help build case patterns.
- Notify your bank/exchange. Some chargebacks may still be possible within 24-72h.
Report to your local authorities
Email template — registrar abuse
abuse@deft.com, domitec-peru@hotmail.com, lromay@pacpelsac.com, abuse-contact@publicdomainregistry.com
Registrar: PDR Ltd. Case: PD-
Embed this report
About this report
About this report: dashboard-opensea.idcapital.top
This domain security report is maintained by PhishDestroy's automated threat-intelligence pipeline. Our system continuously monitors this domain across 95 security vendors on VirusTotal and 3 public blocklists.
The site displays a page titled “https://google.com/”.
dashboard-opensea.idcapital.top has been flagged by 4 security vendors as of May 17, 2026.
If you believe this listing is inaccurate, you can submit an appeal. For more information about our methodology, visit our FAQ page.