premium0peanseamint9[.]vercel[.]app
“Deployment Unavailable”
premium0peanseamint9.vercel.app — Прикритий · доступний. Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 6/92 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, Emsisoft, Fortinet); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 68/100. Реєстратор: Vercel.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies premium0peanseamint9.vercel.app as a confirmed crypto drainer domain actively distributing malicious scripts to steal cryptocurrency assets from unsuspecting users. This domain impersonates legitimate crypto services by leveraging Vercel’s hosting infrastructure under a subdomain structure designed to appear authentic at first glance. The threat actor behind this domain employs a crypto drainer kit, a specialized malware variant that automatically siphons funds from connected wallets by intercepting and manipulating blockchain transactions in real time. The domain’s naming convention suggests an attempt to blend in with premium or legitimate crypto-related services, likely targeting users searching for high-value opportunities or exclusive offers.
This domain resolves to IP address 64.29.17.195 and is registered through Vercel Inc., a legitimate cloud platform provider, which highlights the abuse of reputable hosting services to host malicious content. According to VirusTotal data, 6 out of 95 security vendors have flagged this domain as malicious, indicating a significant but not universal detection rate. The domain holds a valid SSL certificate issued by Google Trust Services, which may further deceive users into believing the site is secure. PhishDestroy’s analysis confirms this domain is currently blocked by MetaMask, a leading cryptocurrency wallet provider, and appears on one active security blocklist, suggesting it has been widely reported by the security community. The combination of a low blocklist presence with moderate VirusTotal detections indicates this domain is newly emergent or employing evasion techniques to delay widespread detection.
As of the latest assessment, premium0peanseamint9.vercel.app remains active and poses an elevated risk to users who interact with it, particularly those who connect cryptocurrency wallets or enter private keys. The presence of a crypto drainer kit means any interaction—such as signing a transaction or approving a token transfer—could result in immediate fund loss. Users are strongly advised to avoid accessing this domain entirely and report it to their wallet providers and security platforms. While the domain is currently flagged in multiple systems, its reliance on Vercel’s infrastructure and the relatively low blocklist count suggest it may persist for some time. Remaining risk is elevated due to the domain’s active status and the sophistication of the drainer kit, which can bypass some security checks. Immediate action by hosting providers and security vendors is recommended to mitigate ongoing abuse.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of premium0peanseamint9.vercel.app · checked May 16, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога