# coinsobee.com — SUSPICIOUS > coinsobee.com hosts a crypto drainer phishing site with 0/95 VirusTotal detections; immediately verify URLs and scan with PhishDestroy to prevent account theft. ## Summary PhishDestroy identifies coinsobee.com as a live, unblocked phishing domain currently impersonating a cryptocurrency exchange login portal to harvest wallet credentials and drain digital assets. The site leverages a recently procured domain—registered on April 02, 2026 through Internet Domain Service BS Corp.—and is already resolving to a hostile IP (172.67.134.55) using a Let’s Encrypt SSL certificate to appear trustworthy. VirusTotal scanning shows zero detections (0/95 engines), indicating the threat is still under the radar of most security vendors and has not yet been added to public blocklists. Technical indicators confirm this is a generic phishing page designed to harvest login credentials; no advanced malware is involved, but the attack is effective because victims believe they are authenticating on the real exchange. The domain’s youth, clean reputation at launch, and use of a reputable SSL issuer combine to lower user suspicion while the phishing kit quietly exfiltrates entered credentials to attacker-controlled servers. Because the threat is newly emerged, traditional browser-based defenses may not yet flag the page, so behavioral scrutiny is critical. If you visited coinsobee.com or entered any credentials, immediately revoke any wallet permissions tied to that exchange account and transfer remaining funds to a fresh wallet under your control. Next, change passwords on all related accounts and enable two-factor authentication wherever possible. Finally, run a full security scan of your device with a reputable tool such as PhishDestroy, and consider reporting the domain to your antivirus vendor for rapid inclusion on their blocklists. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-04-02 12:10:35 - Registrar: Internet Domain Service BS Corp. - IP: 172.67.134.55 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/coinsobee.com - PhishDestroy: https://phishdestroy.io/domain/coinsobee.com/ - LLM endpoint: https://phishdestroy.io/domain/coinsobee.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/coinsobee.com/ Last updated: 2026-04-02