coin-up8[.]top
“coin-up8.top | 522: Connection timed out”
coin-up8.top — Неперевірений. Тип шахрайства: Cryptocurrency. Зведення доказів: VirusTotal 7/91 (ADMINUSLabs, alphaMountain.ai, CRDF, Fortinet, Gridinsoft); URLQuery 1 alert; PhishDestroy score 78/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
coin-up8.top was registered on February 21, 2026 through Gname.com Pte. Ltd. The domain resolves to the Cloudflare edge address 104.21.64.1, which belongs to AS13335 Cloudflare, Inc. The authoritative nameservers are brianna.ns.cloudflare.com and scott.ns.cloudflare.com. TLS is provided by Cloudflare TLS Issuing ECC CA 3, and the site supports HTTP/3.
The site returns HTTP status code 200, but the page title reports “coin-up8.top | 522: Connection timed out”, indicating that the origin server is intentionally delaying or dropping connections. VirusTotal analysis shows that 3 of 95 scanned security vendors have flagged the domain, and Gridinsoft assigns a trust score of 0 out of 100. The domain appears on one public security blocklist and is listed as blocked by PhishDestroy.
Current intelligence classifies the domain as a high‑risk generic phishing operation, but the specific brand or service being spoofed has not been identified in public feeds. The presence of a valid Cloudflare certificate and normal HTTP response suggests the attackers are leveraging legitimate CDN infrastructure to mask malicious activity, making static content analysis difficult. No payload samples or malicious URLs have been publicly released, leaving the exact phishing lure and credential‑harvesting mechanisms uncertain.
Defenders should block DNS resolution to coin-up8.top at the network perimeter and add the IP address 104.21.64.1 to deny lists, recognizing that the address is shared among many legitimate Cloudflare customers. Monitoring for outbound connections to the domain and for HTTP/3 traffic to the Cloudflare edge can help detect attempts to reach the malicious front‑end. Organizations are advised to update email and web filters with the domain and to educate users about unexpected requests for cryptocurrency‑related credentials, as the domain name implies a possible financial lure.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | admin.coin-up01.cc |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога