openseapros-clickn49[.]vercel[.]app
“Deployment Unavailable”
openseapros-clickn49.vercel.app — 内容不可用. 品牌冒充:OpenSea; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 15/93 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CyRadar); Google Safe Browsing flagged; 1 external blocklist match (ScamSniffer); CF Radar malicious; PhishDestroy score 95/100. 注册商: Tucows.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain openseapros-clickn49.vercel.app indicates it was actively impersonating OpenSea, a known non-fungible token (NFT) marketplace, as part of a crypto scam operation. The domain, registered on February 21, 2026, through Tucows Domains Inc., resolved to the IP address 216.198.79.67, hosted on Amazon.com, Inc. infrastructure (AS16509) in the United States. At the time of assessment, the domain returned an HTTP 451 status, with the page title 'Deployment Unavailable,' suggesting either a takedown or temporary suspension of hosting services. Security vendor detections include 15 of 93 engines on VirusTotal flagging the domain as malicious.
It is blocked by at least two security blocklists, including PhishDestroy and ScamSniffer, and is classified by Google Safe Browsing as engaging in social engineering. The SSL certificate, issued by Google Trust Services (WR1), does not mitigate the domain's malicious classification, as certificates are routinely issued to newly registered domains regardless of intent. Infrastructure analysis reveals the use of Vercel hosting and HTTP Strict Transport Security (HSTS), a common practice among both legitimate and malicious sites to enforce encrypted connections. The domain's creation date, recent at the time of detection, aligns with typical patterns observed in short-lived phishing or scam campaigns.
While the exact content of the site remains unanalyzed, the available evidence—including the brand impersonation, crypto scam classification, and security vendor detections—supports a high-risk assessment. Defenders should treat this domain as confirmed malicious. Network-level blocking is recommended, along with monitoring for related subdomains or newly registered domains under the same registrar or hosting provider. Given the domain's current offline status, further forensic analysis may be limited, but historical DNS and WHOIS records should be preserved for potential incident response or legal proceedings.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。