coinmarketcapv1[.]co[.]com
“coinmarketcapv1.co.com”
coinmarketcapv1.co.com — Непроверенный. Сводка доказательств: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); PhishDestroy score 71/100. Регистратор: Moniker Online Services.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
coinmarketcapv1.co.com is currently listed as an active generic phishing site under investigation. The domain resolves to the IPv4 address 169.60.151.233 and returns an HTTP 301 redirect. The hosting appears to be provided by SoftLayer Technologies, Inc, located in the United States. The TLS certificate presented by the server is issued by Sectigo Limited under the Sectigo Public Server Authentication CA DV R36 chain, indicating a publicly trusted certificate but offering no assurance of legitimacy.
Registration data shows the domain was created on August 16, 1997 and is registered through Moniker Online Services LLC. Authoritative name servers are ns1.nic.co.com, ns2.nic.co.com, ns3.nic.co.com, and ns4.nic.co.com. An MX record exists with priority 0 but an empty host field, suggesting a misconfigured or placeholder mail configuration. No additional infrastructure such as CDN or third‑party services is evident from the available data.
Threat intelligence indicates the domain appears on a single security blocklist and is actively blocked by PhishDestroy. VirusTotal scans report zero detections out of 95 engines, and Gridinsoft assigns a trust score of zero out of 100, but these metrics alone do not confirm safety. The page title returned by the web server matches the domain string, and the public page content has not been captured, leaving the specific phishing lure, credential collection mechanism, or potential malicious redirects unverified.
Defenders should treat coinmarketcapv1.co.com as a high‑confidence phishing indicator. Immediate actions include adding the domain and its resolving IP address to outbound and inbound filtering rules, monitoring DNS queries for the listed name servers, and enforcing TLS inspection to detect any anomalous certificate use. Continuous re‑evaluation is advised, as additional content analysis or new detections could change the risk posture, and the under_investigation risk level warrants prioritized monitoring.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание