starcoinbase[.]cc
Проверка домена starcoinbase.cc на фишинг и безопасность
“Coinbase Derivatives”
starcoinbase.cc — Контент недоступен (HTTP 502). Олицетворение бренда: Coinbase; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 18/91 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Регистратор: NameSilo.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
Analysis of starcoinbase.cc indicates an active phishing domain targeting cryptocurrency users, currently under investigation. The domain was registered on May 23, 2026, through NameSilo, LLC, a registrar frequently associated with low-reputation registrations. Infrastructure analysis reveals the domain resolves to IP address 172.67.133.70, hosted on Cloudflare nameservers lilith.ns.cloudflare.com and rohin.ns.cloudflare.com, a configuration commonly observed in phishing campaigns to obscure hosting origins and evade takedowns. As of July 29, 2026, the domain appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL, suggesting detection by specialized anti-phishing systems.
Despite its presence on these blocklists, the domain has not been flagged by any of the 91 security vendors in the most recent VirusTotal scan, though the absence of detections does not confirm legitimacy. The domain’s registration pattern, hosting infrastructure, and blocklist presence collectively indicate a high likelihood of malicious intent, though the specific phishing kit or targeted brand remains unconfirmed. Defenders are advised to treat starcoinbase.cc as a potential threat to cryptocurrency users.
Network-level blocking based on the resolved IP and domain name is recommended, particularly for organizations handling digital asset transactions. Further monitoring and analysis are required to determine the exact nature of the phishing content, including whether it employs credential harvesting, crypto wallet drainers, or other fraudulent mechanisms. Additional intelligence may emerge as the campaign develops, and updates should be incorporated into defensive measures accordingly.
Охват данных12 recorded checks
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.