coinverify[.]org
“CoinVerify - Instant USDT Verification”
Resumo das evidências
Analysis of coinverify.org indicates that the domain was registered on February 21, 2026 through GoDaddy.com, LLC and subsequently resolved to the Amazon-hosted IP address 75.2.60.5, which belongs to AS16509 (Amazon.com, Inc.) in the United States. The site employed a Let's Encrypt certificate (E8) and advertised HSTS via the Netlify platform, as identified by technology profiling. The public page title reads "CoinVerify - Instant USDT Verification," which aligns with the credential phishing classification recorded in the intelligence set.
VirusTotal scanned the domain and recorded a single positive flag out of 93 participating security vendors, while Gridinsoft assigned a trust score of zero out of one hundred, reflecting a high likelihood of malicious intent. The domain appears on one external blocklist and has been actively blocked by PhishDestroy, confirming its recognition by anti‑phishing services. Current infrastructure status is offline, and the domain is no longer reachable.
Definitive evidence of the phishing payload or harvested credentials is not available, so the exact mechanics of the credential theft remain uncertain. Defenders should continue to block the associated IP range, enforce DNS sink‑holing of the domain, and monitor for any re‑hosting attempts that reuse the same certificate or Netlify configuration. Organizations handling USDT or related cryptocurrency transactions should update user‑education material to reference the "CoinVerify" naming pattern, and security teams should incorporate the domain and its IP address into threat‑intel feeds to pre‑empt future campaigns.
Instantâneo das evidências enviadas
- Enviado
- Registros do livro-razão
- 1
- ID do caso
PD-20260124-49F68A- Título da página capturada
- CoinVerify - Instant USDT Verification
- Artefato PDF
- Evidência em PDF
Base jurídica
Texto completo da evidência
Acceptable Use Policy (AUP): The domain coinverify.org is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The continued operation of this domain violates your TOS by facilitating fraudulent schemes, which allows you to suspend or terminate services immediately.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): Prohibits unauthorized access to computers and networks, which is relevant as phishing schemes often involve deception to gain access to sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): Addresses fraudulent schemes that use electronic communications, applicable here due to the nature of phishing emails sent from this domain.
Anti-Phishing Consumer Protection Act: Specifically targets phishing activities, making it illegal to use deceptive means to obtain personal information.
Regulatory Note: Failure to take immediate action against coinverify.org may expose your organization to liability under applicable laws and regulations. Non-compliance could result in legal repercussions and damage to your reputation.
Histórico de denúncias 2
- Denúncia 2 ⚠️ ESCALATION #2 (1383h active): Phishing - coinverify[.]org
- Denúncia 3 ⚠️ ESCALATION #3 (1478h active): Phishing - coinverify[.]org
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of coinverify.org · checked Mar 7, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo