mintingnow-opnsea27[.]vercel[.]app
“Deployment Unavailable”
mintingnow-opnsea27.vercel.app — 内容不可用. 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 12/93 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CyRadar); 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 86/100. 注册商: Tucows.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain mintingnow-opnsea27.vercel.app was registered through Tucows Domains Inc. on 21 February 2026. Hosting resolves to IP 216.198.79.67, which belongs to Amazon.com, Inc. (AS16509) and is geolocated in the United States. The site presents a TLS certificate issued by Google Trust Services under the WR1 label, confirming that HTTPS is correctly provisioned. An HTTP request to the root URL returns status code 451, and the page title reported by passive monitoring reads “Deployment Unavailable”, indicating that the application has been taken offline.
Technical fingerprints reveal the use of Vercel as the underlying platform and the presence of HTTP Strict Transport Security (HSTS) headers. VirusTotal analysis shows that 12 of 93 scanned security vendors flagged the domain as malicious, providing independent corroboration of suspicious activity. The domain appears on four external blocklists—PhishDestroy, Polkadot, Enkrypt, and Codeesura—each of which classifies it as a crypto‑related scam. The threat taxonomy supplied in the intelligence marks the site as a “Crypto Scam” and more specifically as a “crypto drainer”, a pattern commonly used to lure victims into transferring cryptocurrency assets to attacker‑controlled wallets.
Because the site is currently offline, active payload collection is not possible, and the exact lures or wallet addresses employed remain unknown. Nonetheless, the combination of a recent registration, Vercel hosting, a valid Google‑issued TLS certificate, multiple vendor detections, and inclusion on reputable blocklists provides a high‑confidence indication that the domain was purpose‑built for cryptocurrency theft. Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any resurgence of the same IP or Vercel project identifiers, and update threat‑intel feeds with the associated indicators of compromise (IOC) – domain name, IP address 216.198.79.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of mintingnow-opnsea27.vercel.app · checked Mar 2, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。