coinbase-chromextension[.]pages[.]dev
Phishing- und Sicherheitsprüfung für coinbase-chromextension.pages.dev
“Suspected phishing site | Cloudflare”
coinbase-chromextension.pages.dev — Erreichbar · Zugang eingeschränkt (HTTP 403). Markenidentität: Coinbase; Betrugstyp: Crypto Scam. Zusammenfassung der Beweislage: VirusTotal 16/93 (ADMINUSLabs, ChainPatrol, Criminal IP, alphaMountain.ai, BitDefender); URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 95/100. Registrar: Cloudflare.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Evidence Analysis
This domain, coinbase-chromextension.pages.dev, poses a high risk of brand impersonation, specifically targeting Coinbase users. If accessed, the site could deceive visitors into believing they are interacting with a legitimate Coinbase service, potentially leading to the theft of sensitive information such as login credentials, API keys, and personal data.
Analysis indicates that coinbase-chromextension.pages.dev was registered through Cloudflare, Inc. and created on October 08, 2025. The domain has been flagged by 16 out of 95 security vendors on VirusTotal, and Google Safe Browsing has marked it as a phishing site. Additionally, the domain appears on one security blocklist and has been taken offline by PhishDestroy. The use of a Cloudflare registrar and the relatively high detection count from security vendors suggest a deliberate attempt to impersonate Coinbase and exploit its brand trust.
If a user has visited this site, they should immediately change their Coinbase account passwords and any other login credentials that may have been compromised. It is also advisable to monitor financial statements for any unauthorized transactions and to report the incident to Coinbase's customer support. Users should avoid interacting with any links or downloading files from this domain, as they could be malicious. For further protection, users should enable two-factor authentication on their Coinbase accounts and consider using a password manager to generate and store strong, unique passwords.
Datenabdeckung12 recorded checks
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % KonfidenzCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % KonfidenzHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % KonfidenzVirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of coinbase-chromextension.pages.dev · checked Mar 2, 2026
Nachweise und externe BerichteIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.