catcoinbase[.]aquila[.]it
“catcoinbase.aquila.it”
catcoinbase.aquila.it — لم يتم التحقق منها. انتحال العلامة التجارية: Coinbase; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 4/95 (ChainPatrol, alphaMountain.ai, Seclookup, SOCRadar); Spamhaus DBL_PHISH; PhishDestroy score 65/100.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
On 22 July 2026 the domain catcoinbase.aquila.it was observed as part of a brand‑impersonation campaign targeting Coinbase users. The site presented the page title “catcoinbase.aquila.it”, matching the domain name, and was classified as a crypto‑scam. DNS resolution points to the IP address 139.162.181.76, which belongs to AS63949 (Akamai Connected Cloud) and is geolocated in Germany. The authoritative name servers are lunlun.ns.giantpanda.com and yangyang.ns.giantpanda.com, both associated with the Giant Panda DNS service.
No TLS certificate was found, meaning the site was served over plain HTTP, a typical characteristic of low‑cost phishing infrastructure. The domain appears on a single security blocklist and is actively blocked by PhishDestroy. VirusTotal scans recorded four detections out of ninety‑five scanners, confirming that multiple security vendors have flagged the domain as malicious. The campaign’s risk rating is elevated, and the infrastructure has been taken offline at the time of reporting.
Open questions remain regarding the exact content served before takedown, the registration details of the domain, and any additional hosting or command‑and‑control infrastructure that may have been used. No evidence of Safe Browsing or Open Threat Exchange listings was provided. Defenders should add catcoinbase.aquila.it to internal block lists, monitor the associated IP range (139.162.181.0/24) for further activity, and enforce HTTPS‑only policies to reduce exposure to similar domains lacking TLS. Continuous threat‑intel feeds should be consulted for any re‑appearance of the domain or related indicators, and users should be reminded not to enter Coinbase credentials on untrusted sites.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
الأدلة المؤرشفة
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب