mint-nftbox025-eight[.]vercel[.]app
“Deployment Unavailable”
mint-nftbox025-eight.vercel.app — İçerik kullanılamıyor (HTTP 451). Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 14/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 6 alerts; CF Radar malicious; PhishDestroy score 92/100. Kayıt kuruluşu: Tucows.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Analysis of mint-nftbox025-eight.vercel.app indicates a newly registered infrastructure used for a crypto‑drainer campaign. The domain was created on 21 February 2026 and is registered through Tucows Domains Inc. DNS resolution points to IP 216.198.79.67, which belongs to Amazon.com, Inc. (AS16509) and is geolocated in the United States. The web server returns HTTP 451, a “Unavailable For Legal Reasons” status, and the page title returned by the server is “Deployment Unavailable.” The presence of Vercel hosting and HTTP Strict Transport Security (HSTS) headers confirms a Vercel‑based deployment, while the TLS certificate is issued by Google Trust Services under the WR1 profile, indicating a valid HTTPS endpoint.
VirusTotal has recorded 14 detections out of 93 scanners, showing that multiple security engines flag the domain as malicious. The domain is listed on a single external blocklist and has been actively blocked by PhishDestroy, reinforcing its reputation as a threat vector. While the site is currently offline, the combination of recent registration, Amazon‑hosted IP, Vercel technology stack, and multiple vendor detections suggests a purposeful attempt to lure cryptocurrency users into a draining scheme.
Defenders should continue to block the domain at perimeter and DNS layers, monitor for any re‑activation, and correlate any outbound traffic to the IP address with user activity logs. Threat intelligence feeds should be updated to include the domain and its associated IP, and incident response teams should advise users to avoid interacting with links referencing this host, especially any that request wallet credentials or transaction approvals.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | mint-nftbox025-eight.vercel.app |
malicious | Sinkholed |
| Cloudflare DNS | mint-nftbox025-eight.vercel.app |
malicious | Sinkholed |
| OpenPhish | mint-nftbox025-eight.vercel.app |
phishing | Phishing - Crypto/Wallet |
| OpenDNS | mint-nftbox025-eight.vercel.app |
phishing | Phishing Block |
| DNS0 Zero | mint-nftbox025-eight.vercel.app |
malicious | Sinkholed |
| OpenPhish | mint-nftbox025-eight.vercel.app/ |
phishing | Phishing - Crypto/Wallet |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin