premium0peanseamint4[.]vercel[.]app
premium0peanseamint4.vercel.app — Gizlenmiş · ulaşılabilir. Dolandırıcılık türü: Crypto Drainer. Kanıt özeti: VirusTotal 11/92 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Emsisoft); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 83/100. Kayıt kuruluşu: Vercel.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, premium0peanseamint4.vercel.app, operates as an active crypto drainer phishing infrastructure designed to illicitly extract cryptocurrency from compromised digital wallets. The threat specifically targets users through deceptive interfaces mimicking legitimate wallet or token approval prompts, tricking victims into authorizing transactions that transfer assets to attacker-controlled addresses. Analysis indicates the domain is engineered to exploit trust in decentralized finance (DeFi) platforms, leveraging social engineering tactics to bypass security measures in browser-based wallets. Infrastructure analysis reveals the domain resolves to the IP address 64.29.17.195, hosted under Vercel Inc., with an SSL certificate issued by Google Trust Services (WR1). The domain currently appears on three security blocklists, and VirusTotal reports detection by 7 out of 95 security vendors, confirming its malicious classification. The page title, 'Deployment Unavailable,' suggests an attempt to obfuscate its true purpose, potentially indicating a placeholder or fallback state for the phishing kit. The unique seed identifier ed3751 may correlate with specific campaign configurations or tracking mechanisms used by the threat actors. Users who have interacted with premium0peanseamint4.vercel.app should immediately revoke any suspicious wallet approvals or token allowances granted during the encounter. It is critical to disconnect the wallet from all connected decentralized applications (dApps) and transfer remaining assets to a new, secure wallet address. Victims should also monitor their transaction history for unauthorized transfers and report the incident to relevant blockchain security platforms for further analysis. Given the high-risk classification, any credentials or private keys exposed to this domain should be considered compromised and discarded.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenVirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of premium0peanseamint4.vercel.app · checked May 16, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin