luckiestmint18[.]vercel[.]app
“Deployment Unavailable”
Resumo das evidências
Analysis of luckiestmint18.vercel.app shows a high‑risk crypto drainer infrastructure that has been taken offline as of the report date (July 24, 2026). The domain was registered on February 21, 2026 through Tucows Domains Inc. and resolves to the Amazon Web Services address 64.29.17.131, located in the United States under ASN 16509 (Amazon.com, Inc.). The site presents an HTTPS certificate issued by Google Trust Services / WR1, indicating a valid TLS chain, and Vercel hosting is identified through HTTP headers together with enforced HTTP Strict Transport Security. When queried, the server returns HTTP status 451 and a page title of “Deployment Unavailable”, suggesting the application has been deliberately removed or disabled. Reputation services corroborate malicious intent.
Google Safe Browsing classifies the URL as a social‑engineering threat, and the domain appears on two dedicated blocklists—PhishDestroy and ScamSniffer. VirusTotal analysis recorded 15 detections out of 93 scanning engines, reinforcing the classification as a crypto‑related scam. The listed scam type is “Crypto Scam”, consistent with a crypto drainer profile that typically attempts to exfiltrate cryptocurrency assets from unsuspecting victims. Despite the offline status, the observed indicators remain useful for defensive tooling.
Security teams should continue to block the domain at DNS and proxy layers, monitor the associated IP address for any future activation, and incorporate the SSL fingerprint and HTTP‑451 response into threat‑intel feeds. The presence of Vercel and HSTS suggests that any future redeployment could reuse the same infrastructure, so automated detection rules that flag similar TLS configurations combined with the known blocklist entries are recommended. At present, no additional payload or page content has been captured, leaving the exact phishing vector undetermined.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | luckiestmint18.vercel.app |
malicious | Sinkholed |
| Quad9 DNS | luckiestmint18.vercel.app |
malicious | Sinkholed |
| DNS4EU | luckiestmint18.vercel.app |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
9 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
-
Status do domínio
Acessível → Inacessível
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
Tecnologias
2 tecnologias identificadas com alta confiança
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of luckiestmint18.vercel.app · checked Mar 2, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo