ahmedreo4[.]vercel[.]app
“The Best Motherfucking Website”
ahmedreo4.vercel.app — 隐形 · 可达 (HTTP 451). 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 0/94; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 90/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies ahmedreo4.vercel.app as an active crypto drainer scam targeting cryptocurrency users through deceptive login pages. This domain employs Vercel’s infrastructure to host malicious JavaScript payloads designed to siphon funds from unsuspecting victims. The threat is confirmed by behavioral analysis of the site’s code, which intercepts and redirects cryptocurrency wallet transactions to attacker-controlled addresses. Users interacting with this domain risk immediate financial loss, as the drainer executes silently in the background without requiring additional user input beyond initial wallet connection.
This domain was flagged with a VirusTotal detection score of 0/95, indicating no anti-malware engines currently flag it as malicious. It resolves to IP 216.198.79.67 via Vercel Inc.’s hosting service and operates under a Google Trust Services SSL certificate, leveraging legitimate-looking infrastructure to evade scrutiny. The domain was registered through Vercel’s platform, which allows rapid deployment of frontend applications, making it a favored vector for short-lived phishing campaigns. Despite the absence of blocklist entries, the site’s payload and behavioral patterns confirm its malicious intent.
To mitigate exposure, users must verify all URLs before entering credentials or connecting wallets, particularly those shared via social media or unsolicited messages. Avoid interacting with shortened links or domains hosting crypto-related login pages unless their legitimacy is independently confirmed. PhishDestroy recommends reporting suspicious domains immediately and using hardware wallets or transaction simulation tools to detect drainer behavior before fund transfers. Organizations should monitor outbound traffic for connections to this IP and block it at the firewall level.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
取证情报
所用技术 · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of ahmedreo4.vercel.app · checked Apr 1, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。