livemint-mysteryboxs050[.]vercel[.]app
“OpenSea.io”
livemint-mysteryboxs050.vercel.app — 内容不可用. 品牌冒充:OpenSea; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 22/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Certego); CF Radar malicious; PhishDestroy score 95/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis identifies livemint-mysteryboxs050.vercel.app as a brand_impersonation threat with an elevated risk classification. The domain presented the page title "OpenSea.io" and exhibited characteristics consistent with impersonation-based social engineering. At the time of review, the site had already been taken offline, reducing immediate exposure but not eliminating the value of historical indicators for detection, attribution, and future monitoring.
Infrastructure analysis reveals that the domain resolved to IP address 64.29.17.195, located in the United States and associated with AS16509 Amazon.com, Inc. The SSL certificate was issued by Google Trust Services / WR1. Registration and hosting records indicate association with Vercel Inc., and the domain creation date is January 28, 2020. Security telemetry shows that 22 of 95 VirusTotal vendors flagged the domain, indicating substantial detection coverage across security engines. The domain appeared on 1 security blocklist and was specifically blocked by PhishDestroy. These indicators collectively support the elevated risk assessment and are consistent with infrastructure previously associated with deceptive or impersonation-oriented campaigns.
The current status is offline, suggesting that the content has been removed or disabled. Even so, historical records should be retained for threat intelligence correlation, IOC matching, and retrospective investigations. Organizations should monitor for related domains using similar naming conventions, review network logs for connections to 64.29.17.195, and maintain blocklist coverage for associated indicators. Users and defenders should avoid interacting with archived copies, unsolicited links, or derivative domains that reuse comparable branding patterns. Continued monitoring is recommended because threat actors frequently migrate impersonation campaigns to new subdomains or infrastructure after takedown events.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of livemint-mysteryboxs050.vercel.app · checked Mar 1, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。