colnbasse[.]com
“colnbasse.com”
Resumo das evidências
The domain colnbasse.com was registered on February 21, 2026 and is currently taken offline. Infrastructure analysis shows it resolves to the IP address 209.38.63.194, which belongs to DigitalOcean, LLC (AS14061) and is geolocated in the United States. The site’s SSL certificate is identified as grade E7, indicating a low‑trust certificate. The page title returned by the server is exactly "colnbasse.com," providing no additional context about the content hosted.
Threat intelligence records classify this domain as a brand‑impersonation campaign targeting Coinbase, and it appears on a single security blocklist that is currently enforced by PhishDestroy. AlienVault OTX contains references to this domain in 27 distinct threat‑intel pulses, reinforcing its association with malicious activity. VirusTotal scans reported that four of ninety‑three security vendors flagged the domain, suggesting a modest but measurable detection rate among commercial scanners. Although the site is offline, its previous activity demonstrates a pattern consistent with credential‑collection or account‑takeover attempts aimed at Coinbase users.
Uncertainty remains regarding the exact payload or phishing page design, as no page content has been captured in the available data. Defenders should continue to block the IP 209.38.63.194, add colnbasse.com to local and network‑wide blocklists, and monitor for any re‑registration or resurrection of the domain. Ongoing scrutiny of DigitalOcean infrastructure for similar impersonation domains is recommended, as is periodic re‑query of threat‑intel feeds to capture any new pulses or vendor detections related to this indicator.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | colnbasse.com |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo