Criticalscore 62 · flagged Tuesday, September 15, 2026

openaivideo.top

Appeared in the .top zone on Tuesday, September 15, 2026; by the end of that day the census found active website. Full domain report

Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.

Own one of these names and think the listing is wrong? Tell us and a person will look.

What matched

brand in the name
matched: openai
+30
TLD with a high abuse rate
matched: top
+8
brand name behind Cloudflare
matched: cloudflare.com
+6
form on a brand-styled page
matched: has_form
+18
Registrar
Nameserver provider
Nameservers
jo.ns.cloudflare.com, julian.ns.cloudflare.com
First-day state
active website
HTTP status
200
Page title
MINIMAXH3
Has a form
yes
Brand echoed
openai

Model opinions

Second opinionlooks like abusetarget: OpenAIconfidence 63%· claude-opus-5

The domain uses the OpenAI brand ('openaivideo') but the page is branded 'MINIMAXH3' (echoing MiniMax/Hailuo), a credit-selling AI image/video/avatar generation service that explicitly offers an 'official' vs '逆向渠道/Reverse (less stable)' channel — i.e. unauthorised reverse-engineered API access sold for money behind a self-posting sign-in/register form. This is a brand-squat on OpenAI fronting a grey-market API reseller rather than a credential-harvesting OpenAI login clone.

First passlooks like phishingtarget: OpenAIconfidence 92%· claude-haiku-4-5

Domain impersonates OpenAI (openaivideo.top) and presents a login form claiming to be 'MINIMAXH3' (a real video-generation tool), but the page layout, sign-in prompt, and sealed-room form architecture (posts to self with no offsite links) are designed to harvest credentials. The mismatch between the domain's brand claim (OpenAI) and the page title (MINIMAXH3) is characteristic of a phishing redirect or credential-capture scheme exploiting OpenAI's brand authority.

A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.

What the page looked like on Tuesday, September 15, 2026

Screenshot of openaivideo.top taken by the zone census on 2026-09-15

Same data as JSON: /api/zone/domain/openaivideo.top. This page is not indexed by search engines and does not link to the site it describes.