net-coinbase-us[.]framer[.]ai
“Coinbase Signin | Access Your Coinbase Account Safely”
net-coinbase-us.framer.ai — Контент недоступен. Олицетворение бренда: Coinbase; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 17/95 (ADMINUSLabs, ChainPatrol, Criminal IP, alphaMountain.ai, CRDF); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Регистратор: CSC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain presents a direct threat to users by impersonating Coinbase, a major cryptocurrency exchange platform. The site mimics the official Coinbase sign-in page, tricking visitors into entering their account credentials, which are then captured by malicious actors. Such credential harvesting can lead to unauthorized access, financial theft, and further exploitation of compromised accounts. The page title, 'Coinbase Signin | Access Your Coinbase Account Safely,' is crafted to appear legitimate and lower user suspicion during interaction. Analysis indicates the domain was registered on January 06, 2018, through CSC Corporate Domains, Inc., a registrar commonly used for both legitimate and fraudulent purposes. The domain is flagged by 17 out of 95 security vendors on VirusTotal, reflecting a consensus among multiple detection engines regarding its malicious nature. Additionally, the site was hosted on infrastructure belonging to Amazon.com, Inc. (AS16509) and resolved to the IP address 35.71.142.77, a common pattern observed in phishing campaigns leveraging cloud services for rapid deployment and takedown evasion. If you visited net-coinbase-us.framer.ai and entered login credentials, immediate action is required. First, change your Coinbase password using the official website or application from a secure device. Enable multi-factor authentication if not already active. Monitor your account for unauthorized transactions or suspicious activity, and report any anomalies to the platform’s support team. Avoid clicking on links from unsolicited emails or messages, and verify the authenticity of any login page by checking the URL and SSL certificate issuer. Let’s Encrypt certificates, while valid, are frequently used in phishing sites due to their free and automated issuance process.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% уверенностиReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание