Перейти до звіту про безпеку
Checked 09.08.2026 Ref 10A4B0F7

MALICIOUS — CRITICAL

coinflowexx[.]com

PhishDestroy identifies coinflowexx.com as a high-risk phishing site masquerading as a cryptocurrency wallet login portal under the name 'Coinflow'.

95/100 evidence score · Critical
VirusTotal
17/91
Blocklists
3 · MetaMask, ScamSniffer
Доступність
Неперевірений
Report / Add Evidence Appeal this listing
2026-04-27 18:12 UTCНеперевірений

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 17. Публічні списки блокувань, які повідомляють про збіг: 3. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@dynadot.com. The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
3 months
Reports sent
1
Latest case ID
PD-20260427-5F8ECF
Current status
Observed active at latest stored check
Jump to section
Огляд звіту

coinflowexx.com — Неперевірений. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 17/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); Google Safe Browsing flagged; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 95/100. Реєстратор: Dynadot.

Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.

Evidence Analysis

Ref 10A4B0F7

PhishDestroy identifies coinflowexx.com as a high-risk phishing site masquerading as a cryptocurrency wallet login portal under the name 'Coinflow'. This domain is engineered to harvest user credentials and seed phrases, enabling attackers to drain linked crypto wallets. The page title 'coinflow' and active SSL certificate using Let's Encrypt suggest a false sense of legitimacy, but the domain's behavior and infrastructure flag it as malicious.

This domain was flagged with 0 detections out of 95 on VirusTotal, indicating it has not yet been widely recognized by automated scanners. Registered through Dynadot Inc on April 24, 2026, coinflowexx.com is just days old, a common tactic for phishing operators to exploit short-lived domains before takedowns occur. The IP address 56.69.16.222 hosting this site is also linked to social engineering content as per Google Safe Browsing’s SOCIAL_ENGINEERING classification.

Users who visited coinflowexx.com should immediately cease using any credentials entered on the site. Disconnect any crypto wallets or browser extensions, revoke permissions where possible, and scan devices for malware. If funds were stolen, report the incident to relevant exchanges and blockchain forensic services. Always verify URLs through PhishDestroy or trusted threat intelligence tools before interacting with cryptocurrency-related platforms to prevent irreversible losses.

VirusTotal
VirusTotal
17 det.
URLScan
URLScan
Сертифікат TLS
Let's Encrypt
Вік
3 mo
Зафіксований статус
Неперевірений
PhishDestroy
DestroyList
У списку
Reports Sent
1
Обсяг даних12 recorded checks
VirusTotal 17 / 91 URLQuery checked — no detections recorded PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture збережений звіт URLScan verdict Аналіз завершено Блокування DNS 12 перевірено — блокувань немає TLS valid certificate, 86d WHOIS 3 mo old Знімок екрана 3 captures · 3 sources Ланцюжок перенаправлень не досліджено

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
11/12
Sent Report Recorded
Stored sent-report record for registrar Dynadot Inc, hosting provider, 1 abuse contact
abuse@dynadot.com
27.04.2026

Статус у публічних блоклистах

Збережений знімок

Заголовок сторінки
coinflow
Сертифікат TLS
Valid transport encryption · Виданий Let's Encrypt · valid for 86 days

Аналітика доменів

Домен
URLScan Verdict Аналіз завершено score 0 report ↗
Google Safe Browsing Позначено Social engineering checked 27.04.2026
Сервер / ASN nginx/1.29.1 · AS16509 Amazon.com, Inc.
Репутація IP abuse score 0/100 0 reports checked 13.07.2026
Реєстратор Dynadot US(US)
Контакт для скаргabuse@dynadot.com
IP-адреса 56.69.16.222 MY
ГеолокаціяMY Kuala Lumpur, MY
МережаAS16509 · United States Postal Service
Зворотний пошук IPviewdns.info → rapiddns.io →
РеєстраціяСтворено 27.04.2026 (103d)
Elapsed Since First Report 37h
Що ми враховуємо Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Неперевірений.
Що містить кожен звіт Збережені записи вихідних звітів можуть посилатися на докази, доступні на той час, наприклад вердикти постачальників, реєстраційні дані, деталі хостингу, класифікації або знімки екрана. Ця сторінка не визначає точного доставленого корисного навантаження, квитанції, підтвердження чи дії одержувача.
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Вперше виявлено27.04.2026
IoC Extractionscanned 29.07.20260 wallet · 0 Telegram IoCs
Submitted URLhttp://coinflowexx.com/
Сервери іменns2.dyna-ns.net
TLS Fingerprint
TLS Observationvalid from 24.04.2026scanned 27.04.2026
Case ID
ICANN OVERSIGHT

Акредитація та контекст RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Нічого не надсилається автоматично.
Технології · 3 identified
Vue.js
JavaScript frameworks

Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.

vuejs.org 100% впевненості
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org 100% впевненості
Lodash
JavaScript libraries

Lodash is a JavaScript library which provides utility functions for common programming tasks using the functional programming paradigm.

www.lodash.com 100% впевненості
Detected via Cloudflare Radar · Wappalyzer engine
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

17 / 91 постачальників безпеки позначили цей домен
View on VT
Last analyzed Previous stored snapshot: 3 detections
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Google Safe Browsing
Gridinsoft
«Касперський»
LevelBlue
Lionic
SOCRadar
Sophos
VIPRE
Аналіз продуктивності сайту

Google PageSpeed Insights — mobile performance audit of coinflowexx.com · checked Apr 27, 2026

50
Needs Work
Performance
FCP
10.41s
First Contentful Paint
LCP
27.31s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
265ms
Total Blocking Time
SI
21.26s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно
Вбудувати цей звітRead-only HTML widget
HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/coinflowexx.com"
  title="PhishDestroy threat report for coinflowexx.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Дуже щирий лист-подяка

Генератор сатиричних чернеток

Одержувач
Контекст зборів

Це сатирична чернетка. Суми зборів є оцінками; ми не стверджуємо, що вони точно стосуються цього домену.