sso-coinhold-portal[.]framer[.]ai
“Site Not Found | Framer”
sso-coinhold-portal.framer.ai — Contenu indisponible. Résumé des preuves: VirusTotal 15/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, CRDF, CyRadar); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. Bureau d’enregistrement: CSC.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, sso-coinhold-portal.framer.ai, poses a high risk and is specifically designed as a crypto drainer, targeting cryptocurrency wallet credentials under the guise of a legitimate portal. The domain has been taken offline, but it remains a critical threat due to its sophisticated impersonation of Coinhold, a known crypto platform. Security analysts have flagged it as an active phishing attempt aiming to drain digital assets from unsuspecting users.
Technical indicators paint a stark picture: VirusTotal reports that 15 out of 95 security vendors flag this domain as malicious, confirming its dangerous nature. It is hosted on IP address 52.223.52.2 and was registered through CSC Corporate Domains, Inc., with a creation date of January 6, 2018, which gives it an appearance of legitimacy. The domain currently resolves to a 'Site Not Found' page on Framer, but it previously held a Let's Encrypt SSL certificate (E8) that made it appear secure. Two security blocklists have already marked it, and Google Safe Browsing specifically flags it for phishing. These combined data points underscore the coordinated effort behind this credential theft campaign.
To protect against this specific threat, users should never enter any cryptocurrency wallet credentials or private keys on any website that appears suspicious, especially those mimicking official portals like Coinhold. Enable two-factor authentication on all crypto accounts and use a hardware wallet for large holdings. Regularly monitor your wallet for unauthorized transactions and report any suspicious activity to your platform's support team. If you have already entered information on this domain, immediately transfer funds to a new wallet and change all associated passwords.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Technologies · 4 identified
JavaScript library for building user interfaces with component-based architecture.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of sso-coinhold-portal.framer.ai · checked Mar 2, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif