apac2[.]live-vespa-qrs-private[.]coinbase[.]com[.]lc
“coinbase.com.lc”
apac2.live-vespa-qrs-private.coinbase.com.lc — مغطى بعباءة · يمكن الوصول إليه. انتحال العلامة التجارية: Coinbase; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 15/91 (ADMINUSLabs, ChainPatrol, BitDefender, ESET, Forcepoint ThreatSeeker); Google Safe Browsing flagged; cloaking observed; PhishDestroy score 95/100. مسجّل النطاق: AMAZO-4 (ASN: 16509).
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
The domain apac2.live-vespa-qrs-private.coinbase.com.lc is a high-risk phishing site engaged in brand impersonation of Coinbase. It was designed to deceive users into believing they are accessing a legitimate Coinbase service, likely to steal login credentials and other sensitive financial information. The page title "coinbase.com.lc" further reinforces the fraudulent appearance. No specific drainer kit was identified in this investigation.
Technical analysis reveals that this domain was flagged by 14 out of 95 security vendors on VirusTotal, indicating broad consensus on its malicious nature. It appears on a single security blocklist and is currently flagged by Google Safe Browsing for phishing activity. The domain was registered through AMAZO-4 (ASN 16509) and resolves to IP address 75.2.18.233. Its SSL certificate was issued by Let's Encrypt / R13, which is commonly abused by phishing campaigns. The creation date was not specified, but the domain is now offline.
As of the latest check, the domain has been taken offline, mitigating immediate risk. However, users who may have visited the site prior to takedown should monitor their accounts for unauthorized access and change passwords if any credentials were entered. PhishDestroy recommends enabling multi-factor authentication on Coinbase accounts and remaining vigilant against similar subdomain-based phishing attempts. No residual risk is present from this specific domain, but the campaign may reappear under different URLs.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 2 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Web platform based on Nginx with LuaJIT for scalable web apps.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of apac2.live-vespa-qrs-private.coinbase.com.lc · checked Mar 2, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب