coinaistock[.]vip
“Welcome to Coinbase AI Stock”
coinaistock.vip — Контент недоступний. Уособлення бренду: Coinbase; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 17/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, Certego, CRDF); Google Safe Browsing flagged; PhishDestroy score 95/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain coinaistock.vip is currently active and classified as a high-risk brand impersonation threat targeting Coinbase. Analysis indicates the site falsely presents itself as a Coinbase-affiliated AI stock platform, as evidenced by its page title, 'Welcome to Coinbase AI Stock.' This domain is explicitly designed to deceive users into believing it is an official or endorsed service of the targeted brand, increasing the likelihood of credential theft or financial fraud. Infrastructure analysis reveals multiple technical indicators of malicious intent. The domain is flagged by 17 of 95 security vendors on VirusTotal, and it appears on one security blocklist. It was registered on December 08, 2025, through Gname.com Pte. Ltd., a registrar frequently associated with suspicious domains. The site resolves to the IP address 104.21.12.230, hosted on Cloudflare's network (AS13335), which is commonly used to obscure the true origin of malicious infrastructure. The SSL certificate is issued by Google Trust Services (WE1), a legitimate provider, but this does not mitigate the domain's fraudulent nature. Google Safe Browsing has also classified the domain as phishing, further corroborating its malicious status. The domain remains active and poses a significant risk to users. Immediate action is recommended: security teams should block access to coinaistock.vip at the network level and update detection rules to include its IP address and domain name. Users who may have interacted with the site should be advised to reset credentials, monitor financial accounts for unauthorized activity, and report the incident to relevant fraud prevention authorities. Organizations should also review registrar and hosting provider policies to disrupt similar threats proactively.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 1 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога