onramp-demo-application-git-main-coinbase-vercel[.]vercel[.]app
“Coinbase Onramp & Offramp Demo”
onramp-demo-application-git-main-coinbase-vercel.vercel.app — لم يتم التحقق منها. انتحال العلامة التجارية: Coinbase; نوع الاحتيال: Impersonation. ملخص الأدلة: VirusTotal 17/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, CyRadar, Ermes); CF Radar malicious; PhishDestroy score 95/100. مسجّل النطاق: Vercel.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis indicates the domain onramp-demo-application-git-main-coinbase-vercel.vercel.app is actively impersonating Coinbase, a cryptocurrency exchange platform. Registered through Vercel, the domain resolves to IP 216.198.79.131, hosted in the US under Vercel, Inc. infrastructure. The page title, 'Coinbase Onramp & Offramp Demo,' explicitly aligns with the targeted brand, suggesting an attempt to deceive users into believing the site is an official Coinbase service. As of July 19, 2026, the domain remains active with an HTTP 200 status, indicating functional hosting. Security vendors have flagged this domain, with 18 of 91 engines on VirusTotal detecting it as malicious. It appears on at least one blocklist, specifically PhishDestroy. The SSL certificate is issued by Google Trust Services (WR1), a common provider for both legitimate and malicious sites, offering no definitive indication of intent. No evidence currently links this domain to a known phishing kit or broader campaign infrastructure. Defenders should treat this domain as high-risk due to its active status, brand impersonation, and detection by multiple security vendors. Blocking the domain at DNS or proxy level is recommended, alongside monitoring for related subdomains or IPs within Vercel’s infrastructure. Further investigation into user interactions or credential harvesting mechanisms is warranted, though no specific payload or exfiltration method has been confirmed. The exact content and functionality of the site remain unanalyzed; defenders should avoid direct access without proper isolation.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
التقنيات · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of onramp-demo-application-git-main-coinbase-vercel.vercel.app · checked Jul 20, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب