coinnekt[.]live
“Coinnkt Web Solution | Digital Marketing & SEO Services for Business Growth”
Résumé des preuves
Analysis of the domain coinnekt.live indicates it was a brand impersonation scam targeting Google, operational as of July 22, 2026. The domain resolved to the IP address 91.222.173.30, hosted on AS43641 (SOLLUTIUM EU Sp z.o.o.) in the Netherlands. Registration was handled through Vsys_USA (ASN 43641), with nameservers ns1-us.v-sys.org and ns2-us.v-sys.org. The page title, 'Coinnkt Web Solution | Digital Marketing & SEO Services for Business Growth,' does not directly reference Google, but the domain was explicitly flagged for Google brand impersonation in threat intelligence sources.
Detection data shows the domain appeared on one security blocklist (PhishDestroy) and was flagged by 2 of 93 security vendors on VirusTotal, though the specific detection rules or signatures are not detailed in available evidence. No SSL certificate was present, increasing the likelihood of interception or manipulation of unencrypted traffic. The domain has since been taken offline, though historical DNS records or cached content may still pose residual risks. Defenders should treat this domain as confirmed malicious based on its association with brand impersonation, hosting on a known bulletproof infrastructure, and detection by multiple security vendors.
Network-level blocking of the IP 91.222.173.30 and monitoring for related domains registered through Vsys_USA or using the same nameservers is recommended. Given the offline status, further forensic analysis of the site’s content is not possible, but the infrastructure patterns align with prior phishing campaigns targeting major tech brands. No evidence suggests this domain was part of a larger malware distribution or credential-harvesting kit, though the absence of SSL and the use of a non-branded page title may indicate an attempt to evade automated detection systems.
Data Coverage
Signaux de sécurité
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif