coinlifee[.]com
“AGBIT”
Сводка доказательств
Analysis of coinlifee.com indicates a phishing domain targeting users through an AGBIT-themed interface, as evidenced by the page title 'AGBIT' and technical infrastructure linked to known malicious activity. The domain was registered on February 21, 2026, through Gname.com Pte. Ltd. and resolved to IP 134.122.205.88, hosted by CTG Server Limited (AS152194) in Hong Kong. Cloudflare nameservers (huxley.ns.cloudflare.com, jade.ns.cloudflare.com) and a Let's Encrypt SSL certificate (R13) were in use, alongside detected technologies including Vue.js, jQuery, HSTS, HTTP/3, and Cloudflare Browser Insights.
The domain is currently offline, but prior assessments flagged it on two security blocklists (PhishDestroy, ScamSniffer) and assigned low trust scores (Scamadviser: 5/100, Gridinsoft: 1/100). VirusTotal detections from 12 of 93 security vendors further corroborate malicious classification. While the exact phishing methodology (e.g., credential harvesting, payment fraud) remains unconfirmed due to the site's offline status, the combination of hosting provider, Cloudflare proxying, and detection by multiple vendors aligns with patterns observed in phishing operations.
Defenders should treat this domain as compromised and prioritize blocking resolutions to 134.122.205.88, monitoring for re-activation under the same or similar infrastructure. No brand-specific targeting beyond the 'AGBIT' page title is confirmed in available data.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260201-FC1B41- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
Сигналы безопасности
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | coinlifee.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
9 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of coinlifee.com · checked Mar 2, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание