premium0peanseamint4[.]vercel[.]app
premium0peanseamint4.vercel.app — 隐形 · 可达. 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 11/92 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Emsisoft); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 83/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, premium0peanseamint4.vercel.app, operates as an active crypto drainer phishing infrastructure designed to illicitly extract cryptocurrency from compromised digital wallets. The threat specifically targets users through deceptive interfaces mimicking legitimate wallet or token approval prompts, tricking victims into authorizing transactions that transfer assets to attacker-controlled addresses. Analysis indicates the domain is engineered to exploit trust in decentralized finance (DeFi) platforms, leveraging social engineering tactics to bypass security measures in browser-based wallets. Infrastructure analysis reveals the domain resolves to the IP address 64.29.17.195, hosted under Vercel Inc., with an SSL certificate issued by Google Trust Services (WR1). The domain currently appears on three security blocklists, and VirusTotal reports detection by 7 out of 95 security vendors, confirming its malicious classification. The page title, 'Deployment Unavailable,' suggests an attempt to obfuscate its true purpose, potentially indicating a placeholder or fallback state for the phishing kit. The unique seed identifier ed3751 may correlate with specific campaign configurations or tracking mechanisms used by the threat actors. Users who have interacted with premium0peanseamint4.vercel.app should immediately revoke any suspicious wallet approvals or token allowances granted during the encounter. It is critical to disconnect the wallet from all connected decentralized applications (dApps) and transfer remaining assets to a new, secure wallet address. Victims should also monitor their transaction history for unauthorized transfers and report the incident to relevant blockchain security platforms for further analysis. Given the high-risk classification, any credentials or private keys exposed to this domain should be considered compromised and discarded.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of premium0peanseamint4.vercel.app · checked May 16, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。