coinmixer[.]pro
“Bitcoin Mixer | CoinMixer”
coinmixer.pro — Não verificado. Representação da marca: Facebook; Tipo de golpe: Crypto Scam. Resumo das evidências: VirusTotal 2/91 (CRDF, Gridinsoft); 2 external blocklist matches (ScamSniffer, Enkrypt); PhishDestroy score 66/100. Registrador: MVPS-NET (ASN: 202448).
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of coinmixer.pro indicates a confirmed brand‑impersonation operation that targets Facebook users. The domain resolves to the IPv4 address 188.212.124.174, which is allocated to MVPS LTD in the Netherlands (ASN 202448). Hosting is provided through OpenProvider, as evidenced by the authoritative name servers ns1.openprovider.nl, ns2.openprovider.be, and ns3.openprovider.eu. No TLS certificate is presented, and the site is currently offline, preventing real‑time verification of its content.
The page title returned during prior crawls, "Bitcoin Mixer | CoinMixer," aligns with the listed scam type of a crypto‑related mixer, suggesting the site was positioned to lure victims into a cryptocurrency laundering service while masquerading as a Facebook‑related offering. Reputation metrics are poor: Gridinsoft assigns a trust score of 0 / 100, Scamadviser reports 32 / 100, and the domain appears on three security blocklists. VirusTotal analysis shows two of ninety‑five scanners flagging the domain as malicious. Blocklist inclusion by PhishDestroy, ScamSniffer, and Enkrypt further corroborates the threat.
The domain explicitly impersonates Facebook, indicating intent to harvest credentials or redirect users to fraudulent cryptocurrency services. Defenders should block the IP 188.212.124.174 and the domain at DNS level, monitor for any resurgence of the site, and incorporate the listed blocklist signatures into inbound traffic filters. Ongoing threat‑intel feeds should be consulted for any new indicators, as the offline status limits current visibility into payload delivery mechanisms.
Sinais de segurança
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Evidências e relatórios externos
“Malicious Website”
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo