cccoinbas[.]vip
Pemeriksaan phishing dan keamanan cccoinbas.vip
“Coinbase”
cccoinbas.vip — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Coinbase; Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 11/95 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); Google Safe Browsing flagged; PhishDestroy score 83/100. Registrar: Domain International S….
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain cccoinbas.vip was created on November 27, 2025 and is registered through Domain International Services Limited. It is delegated to four nameservers (ns1.domainnamedns.com, ns2.domainnamedns.com, ns3.domainnamedns.com, ns4.domainname) and resolves to the IP address 202.95.15.49, which belongs to AS152194 owned by CTG Server Limited in Hong Kong. No SSL certificate is present, indicating that the site only served unsecured HTTP traffic when it was active. The page title returned by the site was "Coinbase", matching the declared brand target of Coinbase and confirming a brand‑impersonation intent.
Google Safe Browsing categorised the domain as "social engineering", and 11 of the 95 vendors on VirusTotal flagged it, reinforcing the malicious assessment. Gridinsoft assigned a trust score of 0 out of 100, and the domain appears on at least one public blocklist, with PhishDestroy explicitly blocking it. The operational status is currently offline, so direct content inspection is not possible; consequently, response codes, exact page markup, and any credential‑harvesting forms remain unknown.
Defenders should continue to block the domain and its resolved IP, add the domain to internal deny lists, and monitor for any re‑registration attempts. Updating IDS/IPS signatures with the observed hostnames, nameserver pattern, and the association to the HK hosting AS can help detect future campaigns that reuse similar infrastructure. Monitoring for other domains that resolve to 202.95.15.49 or share the same registrar may uncover related phishing infrastructure targeting cryptocurrency users.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Intelijen Forensik
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive