cratdappclaim[.]vercel[.]app
“CratD2C”
cratdappclaim.vercel.app — Konten tidak tersedia. Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 1/95 (Trustwave); 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 74/100. Registrar: Tucows.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain cratdappclaim.vercel.app was registered on February 21, 2026 through Tucows Domains Inc. and is hosted on the Vercel platform, as indicated by the detected Vercel technology fingerprint and the presence of HTTP Strict Transport Security (HSTS). The site presented an HTTP 451 response and the page title “CratD2C” before being taken offline. The TLS certificate was issued by Google Trust Services under the WR1 profile, confirming a valid HTTPS endpoint at the time of capture. Network resolution points to the IPv4 address 64.29.17.131, which belongs to Amazon.com, Inc. (AS16509) and resolves to a location in the United States. VirusTotal recorded a single positive detection out of 95 scanning engines, and the domain appears on four independent security blocklists, including PhishDestroy, Polkadot, Enkrypt, and Codeesura.
The combined evidence aligns with the classification of a crypto‑drainer scam, a subset of crypto‑related fraud that typically attempts to exfiltrate digital assets from unsuspecting victims. No additional artifacts such as login forms, redirects, or payloads have been observed because the site is currently offline. Consequently, the precise mechanisms used to lure victims or to interact with cryptocurrency wallets remain unknown. Likewise, the presence of any malicious scripts or third‑party services could not be verified.
Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any resurgence of the same IP address or Vercel sub‑domain patterns, and add the associated IP to internal deny lists. Given the legitimate‑looking SSL certificate, reliance on certificate validation alone is insufficient; threat‑intel feeds that incorporate the observed blocklist entries and the VirusTotal detection should be consulted for early warning. Analysts should also watch for newly registered Vercel‑hosted domains that reuse the “CratD” naming convention, as they may represent follow‑on infrastructure.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive