coinbase[.]hmail[.]us
“Apache2 Ubuntu Default Page: It works”
ملخص الأدلة
Analysis dated August 01, 2026 identifies coinbase.hmail.us as an active phishing domain targeting cryptocurrency users. The domain currently resolves to 127.0.0.2, a localhost address often used in early-stage phishing setups or sinkholing, though this does not confirm benign intent. Seven of ninety-one security vendors on VirusTotal detect the domain as malicious, indicating moderate but not universal recognition. Infrastructure review shows the domain lacks configured nameservers, a common trait in hastily deployed phishing sites or domains repurposed from expired registrations.
Three security blocklists have listed the domain, and it is actively blocked by PhishDestroy, MetaMask, and SEAL, suggesting confirmed malicious activity. No registrar, hosting provider, or SSL certificate details are available in current intelligence, limiting attribution. The absence of Safe Browsing or Open Threat Exchange entries does not imply safety, as detection may lag behind deployment.
Defenders should treat this domain as high-risk and implement blocking at DNS or network level. If internal logs show connections to 127.0.0.2 from this domain, investigate for potential phishing exposure or misconfigured security tools. Further analysis of page content is pending; exact phishing mechanics remain unconfirmed.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
-
أول تسجيل
أول قيمة محفوظة: يمكن الوصول إليه
-
حالة النطاق
يمكن الوصول إليه ← يتعذر الوصول إليه
-
حالة النطاق
يتعذر الوصول إليه ← يمكن الوصول إليه
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب