coinomi[.]download
“coinomi.download - coinomi Resources and Information.”
coinomi.download — Contenido no disponible. Resumen de las pruebas: VirusTotal 9/93 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, Chong Lua Dao, CRDF); URLQuery 3 alerts; PhishDestroy score 77/100.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Analysis of the domain coinomi.download, observed on July 23 2026, indicates that the site was active for a brief window before being taken offline. The domain was created on February 21 2026 and resolves to the IPv4 address 91.195.240.94, which belongs to AS47846 under SEDO GmbH in Germany, placing the hosting infrastructure in DE. HTTPS was enabled, with the TLS certificate issued by Encryption Everywhere DV TLS CA - G2, confirming that a legitimate‑looking certificate was presented to visitors.
VirusTotal scans show that nine of ninety‑three security vendors flagged the domain, providing independent corroboration of malicious intent. The site appears on one security blocklist and has been explicitly blocked by the PhishDestroy service, reinforcing the assessment that it was used for phishing. The only publicly visible attribute is the page title “coinomi.download - coinomi Resources and Information,” which suggests an attempt to associate the site with the Coinomi cryptocurrency wallet brand, although no further content analysis is available.
Uncertainties remain regarding the specific phishing workflow, such as whether credential‑stealing forms were hosted, which URLs were served, or which phishing kit was employed, because no additional page‑level evidence was captured. Defenders should add coinomi.download to URL filtering policies, block the resolved IP 91.195.240.94 at the network perimeter, and ensure TLS inspection can detect any future reuse of the same certificate. Continuous monitoring of SEDO‑hosted IP ranges for similar activity is advised, as is sharing the indicator set with threat‑sharing platforms to aid broader community protection.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.