# mysteryboxvp.vercel.app — MALICIOUS > Caution: mysteryboxvp.vercel.app flagged for phishing and now offline. Avoid interaction to protect your credentials and data. ## Summary PhishDestroy classifies mysteryboxvp.vercel.app as a medium-risk generic phishing threat. Although the domain does not impersonate a specific brand, its involvement in credential phishing activities is confirmed by multiple security sources. The domain was first registered on February 21, 2026, using Tucows Domains Inc., and resolves to IP address 76.76.21.123, hosted on Vercel's infrastructure. It appears on three different security blocklists, and VirusTotal reports that 8 out of 95 security vendors detect it as malicious. Currently, the domain is offline and displays a "451: UNAVAILABLE_FOR_LEGAL_REASONS" message, indicating it is no longer active. Users are advised to remain vigilant and avoid engaging with this domain or any related communications. PhishDestroy recommends updating endpoint protections and monitoring for associated phishing attempts. Since the domain is taken offline, immediate risk is diminished; however, archived links or cached pages could still pose threats if accessed. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 451) - Page title: 451: UNAVAILABLE_FOR_LEGAL_REASONS ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Registrar: Tucows Domains Inc. - Country: CA - IP: 76.76.21.123 - IP Country: US - IP City: Walnut - IP Org: AS16509 Amazon.com, Inc. - SSL Issuer: Google Trust Services / WR1 ## Detection Status - VirusTotal: 8 vendors flagged Vendors: ["alphaMountain.ai", "BitDefender", "ESET", "Emsisoft", "G-Data", "Lionic", "Sophos", "Webroot"] - Google Safe Browsing: clean - Blocklists: 3 hits Lists: ["PhishDestroy", "ScamSniffer", "Enkrypt"] ## Evidence - Screenshot: https://urlscan.io/screenshots/1a8e71dd-a463-4ed8-aceb-11f5c391f55a.png - Cloudflare Radar: https://radar.cloudflare.com/scan/b9d1b7be-6bd8-4b9d-b0b4-ce98beafcb3c - PhishDestroy: https://phishdestroy.io/domain/mysteryboxvp.vercel.app/ - LLM endpoint: https://phishdestroy.io/domain/mysteryboxvp.vercel.app/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/mysteryboxvp.vercel.app/ Last updated: 2026-03-19