moments-nft[.]vercel[.]app
“Moments.NFT”
moments-nft.vercel.app — 隐形 · 可达. 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 4/91 (ADMINUSLabs, alphaMountain.ai, Fortinet, Gridinsoft); 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); cloaking observed; PhishDestroy score 98/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies moments-nft.vercel.app as an active crypto drainer impersonating the Moments.NFT brand. The site masquerades as a legitimate NFT platform, likely targeting users through social media or phishing campaigns to trick them into connecting cryptocurrency wallets and draining assets. No public drainer kit signature has been released yet, but the page title and branding closely mimic legitimate NFT projects, suggesting a low-effort but potentially effective impersonation strategy.
Technical indicators confirm the site’s malicious nature. VirusTotal currently shows 0 out of 95 security engines flagging the domain as malicious, indicating a low detection rate despite its active status. The site resolves to IP address 216.198.79.131, is hosted on Vercel Inc. infrastructure, and uses a Google Trust Services SSL certificate to appear legitimate. The domain is registered through Vercel and remains active as of the latest scan, with no known blocklist entries or Google Safe Browsing (GSB) classification. This combination of a reputable hosting provider, valid SSL, and low detection rate makes it particularly dangerous to unsuspecting users.
Despite its current active status, the operational risk remains high due to the domain’s ability to evade detection and its clear intent to deceive users into connecting wallets. Immediate actions include blocking the domain at the network and DNS level, reporting the site to Google Safe Browsing and Vercel’s abuse team, and warning users to avoid any interaction with moments-nft.vercel.app. Remaining risk stems from the possibility of the domain spreading through social engineering tactics or compromised advertisements. Users are advised to verify URLs carefully, avoid wallet connections on unfamiliar sites, and report any suspicious activity to relevant security teams to prevent further exploitation.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of moments-nft.vercel.app · checked Apr 27, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。