lmaxdigital[.]vip
“Rocket”
Сводка доказательств
The domain lmaxdigital.vip has been identified as a confirmed phishing site engaged in brand impersonation of Coinbase, a major cryptocurrency exchange. This threat is classified as high-risk and has since been taken offline, but users should remain vigilant as similar domains may still be active. The site was discovered with a page title of "Rocket" and was designed to deceive visitors into believing they were interacting with legitimate Coinbase services, likely to steal login credentials or deploy a crypto drainer.
Technical analysis reveals that lmaxdigital.vip was flagged by 17 out of 95 security vendors on VirusTotal, indicating widespread detection as malicious. The domain was registered through Dynadot Inc on December 12, 2025, and resolves to IP address 188.114.96.3. Its SSL certificate is issued by WE1, and it appears on 3 security blocklists. These indicators collectively confirm the domain's malicious intent and its association with phishing campaigns targeting Coinbase users.
As the site is currently offline, immediate risk is reduced, but PhishDestroy recommends that all users who may have encountered lmaxdigital.vip change their Coinbase passwords and enable two-factor authentication immediately. Always verify URLs carefully before entering sensitive information, and report any suspicious domains to relevant security authorities. For ongoing protection, rely on reputable security tools and stay informed about emerging phishing threats targeting cryptocurrency platforms.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание