lucky-giftbox7[.]vercel[.]app
“Deployment Unavailable”
lucky-giftbox7.vercel.app — Inhalt nicht verfügbar. Betrugstyp: Generic Phishing. Zusammenfassung der Beweislage: VirusTotal 18/95 (ADMINUSLabs, ChainPatrol, Criminal IP, alphaMountain.ai, ArcSight Threat Intelligence); URLQuery 3 alerts; 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 95/100. Registrar: Tucows.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
This domain is flagged as a high-risk crypto drainer phishing operation targeting cryptocurrency wallet users. Analysis indicates the site impersonates legitimate crypto reward or airdrop campaigns, tricking victims into connecting wallets to malicious smart contracts that drain funds. The threat type is classified as a crypto asset theft mechanism, leveraging social engineering to exploit user trust in seemingly official promotions. Infrastructure analysis reveals the domain was registered on February 21, 2026, through Tucows Domains Inc., an unusual registrar choice for phishing domains. It resolves to IP address 64.29.17.195, hosted on Amazon Web Services (AS16509) in the United States. The domain appears on five security blocklists, including PhishDestroy, Polkadot, Enkrypt, Codeesura, and PhishingDB. VirusTotal detection shows 18 out of 95 security vendors flagging the domain as malicious. The SSL certificate is issued by Google Trust Services (WR1), and the page currently displays a 'Deployment Unavailable' status, suggesting recent takedown or operational disruption. Mitigation requires immediate action from cryptocurrency users and security teams. Users should verify all crypto reward offers through official project channels and never connect wallets to unverified websites. Security teams should block the domain and associated IP at the network level, monitor for related phishing domains using the same registrar or hosting infrastructure, and deploy endpoint protection rules to detect wallet-draining scripts. Wallet providers should flag transactions originating from interactions with this domain as high-risk and alert users. Given the domain's presence on multiple blocklists, organizations should cross-reference internal logs for any prior connections to this infrastructure.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 2 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100 % KonfidenzHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % KonfidenzVirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of lucky-giftbox7.vercel.app · checked Mar 2, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt