aitrader3-repo[.]vercel[.]app
“aitrader3-repo.vercel.app”
aitrader3-repo.vercel.app — 클로킹됨 · 접근 가능. 브랜드 사칭: MetaMask; 사기 유형: Brand Impersonation. 증거 요약: VirusTotal 0/91; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 66/100. 등록기관: Vercel.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
This domain, aitrader3-repo.vercel.app, is flagged as an active high-risk phishing resource specializing in brand impersonation targeting MetaMask cryptocurrency wallet users. Analysis indicates the site presents a fraudulent interface mimicking the legitimate MetaMask platform, likely designed to harvest wallet credentials, seed phrases, or private keys through deceptive input fields. The page title, CODE COMPILER, suggests an attempt to disguise the malicious intent behind a technical facade, potentially evading casual detection by users unfamiliar with legitimate MetaMask services. Infrastructure analysis reveals the domain is hosted on Vercel Inc. infrastructure and resolves to the IP address 216.198.79.3, associated with Amazon.com, Inc. (AS16509) in the United States. The SSL certificate is issued by Google Trust Services under the WR1 root, providing a false sense of security. Despite its active malicious status, the domain has not yet been flagged by VirusTotal, showing 0 detections out of 95 security engines. However, it appears on three independent security blocklists, indicating prior identification by specialized threat intelligence sources. No creation date is publicly available due to the domain being a subdomain of Vercel's platform, which complicates historical tracking. Current status remains active, with confirmed blocking by at least three security entities. The remaining risk is classified as high due to the domain's operational state, low detection rate on aggregate scanning platforms, and direct targeting of cryptocurrency users. Users are advised to treat any interaction with this domain as malicious and report it to their security providers. Organizations should update their blocklists to include this domain and its associated IP address. Cryptocurrency wallet holders are reminded to verify domain authenticity before entering sensitive information and to enable multi-factor authentication where available to mitigate credential theft risks.
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 신뢰도 100%VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.