openopenbox304[.]vercel[.]app
“Deployment Unavailable”
Résumé des preuves
Analysis of openopenbox304.vercel.app indicates that the domain was actively used for a phishing campaign before being taken offline. The site returned HTTP status 451, signalling that the deployment was unavailable, and the page title reflected the same message. Technical fingerprints show the presence of Vercel hosting with HSTS enforced, and the TLS certificate was issued by Google Trust Services under the WR1 label, confirming a legitimate certificate chain. DNS resolution points to IP address 64.29.17.3, which belongs to AS16509 Amazon.com, Inc., locating the infrastructure in the United States.
Registration details list Vercel Inc. as the registrar, and the nameserver query returned NS_NOT_FOUND, indicating that standard authoritative records are missing or obscured. VirusTotal scans flagged the domain with 15 out of 95 security vendors, providing a moderate to high confidence indication of malicious activity. Independent blocklists have already listed the domain, with four external blocklists and specific anti‑phishing services—PhishDestroy, Polkadot, Enkrypt, and Codeesura—explicitly blocking it. The cumulative evidence from vendor detections, blocklist entries, and hosting analysis substantiates the classification as a phishing site.
Because the domain is currently offline, active payloads cannot be examined, leaving the exact phishing vector and targeted brand unknown. Defenders should maintain the domain on deny lists, monitor the associated IP range for any rehosted malicious content, and ensure that any outbound requests to the IP are blocked. Continuous watch on Vercel‑hosted assets and periodic re‑scans are recommended to catch potential re‑deployment under a new subdomain or variant.
Data Coverage
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
7 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif