nft-sea[.]vercel[.]app
Zusammenfassung der Beweislage
The domain nft-sea.vercel.app is currently flagged as an active crypto drainer phishing site, targeting users of decentralized finance and non-fungible token platforms. This infrastructure is designed to siphon cryptocurrency assets from victims by exploiting wallet connection prompts and malicious smart contract interactions. No legitimate brand impersonation is observed, but the domain leverages a high-trust hosting provider to evade immediate suspicion. Analysis indicates the domain was registered through Vercel on April 27, 2026, and resolves to the IP address 64.29.17.131, located in the United States under Vercel, Inc. Despite its recent creation, the domain has already been flagged by three security blocklists, including PhishDestroy, MetaMask, and SEAL. VirusTotal reports 0 detections out of 95 vendors, suggesting the campaign is still evading widespread automated detection. The SSL certificate is issued by Google Trust Services (WR1), further masking its malicious intent behind a legitimate certificate authority. The domain remains active as of the latest verification, posing a continued risk to users interacting with decentralized applications. Security teams are advised to block the domain and associated IP address at the network level. End users should avoid connecting wallets or approving transactions on this site, and verify domain authenticity through official project channels. Monitoring for similar patterns under Vercel-hosted subdomains is recommended due to the platform's frequent exploitation in crypto drainer campaigns.
Data Coverage
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 13.08.2026
8 überwachte externe Feeds Kein Treffer
Domain-Intelligenz
Technische DetailsDNS, TLS-Namen und Zeitstempel
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt