coinveris[.]com
Проверка домена coinveris.com на фишинг и безопасность
“Bitcoin ve Kripto Al | CoinVeris”
coinveris.com — Контент недоступен (HTTP 502). Олицетворение бренда: Bitcoin; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 1/94 (Fortinet); Spamhaus DBL_PHISH; PhishDestroy score 56/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
coinveris.com was registered on 2026-03-06 through NiceNIC International Group Co., Limited and points to the Cloudflare edge address 104.21.35.6 located in the United States (AS13335). The domain resolves via the Cloudflare authoritative nameservers craig.ns.cloudflare.com and elaine.ns.cloudflare.com and does not present an SSL/TLS certificate, leaving HTTP connections unencrypted. Public scans show the site title “Bitcoin ve Kripto Al | CoinVeris”, which references Bitcoin and suggests a Turkish‑language offering related to cryptocurrency acquisition. The only explicit attribution in the intelligence is a brand impersonation of Bitcoin.
VirusTotal analysis returned a single positive detection out of 94 scanning engines, indicating that at least one security product identified malicious behavior. The domain appears on one external security blocklist and has been actively blocked by the PhishDestroy feed, confirming that threat‑intelligence communities consider it malicious. As of the report date the site is taken offline, but the underlying IP remains under Cloudflare control and could be reused for future campaigns.
Defenders should add coinveris.com to URL filtering policies, monitor traffic to the associated IP range, and consider sink‑holing or null‑routing the address. Because the site lacks HTTPS, any attempted user interaction would be vulnerable to eavesdropping, but the primary risk is the brand‑spoofing of Bitcoin to lure victims. Continuous re‑evaluation is advised in case the domain is re‑activated or the hosting infrastructure is repurposed for new phishing attempts.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 03:48:34 UTC
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260306-CC4AFB Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание