coinmexchange[.]com
“Coin Mine”
Зведення доказів
The domain coinmexchange.com was registered on 20 June 2026 through NameSilo, LLC. Its authoritative nameservers are huxley.ns.cloudflare.com and violet.ns.cloudflare.com, indicating the use of Cloudflare’s DNS service. DNS resolution points to the IPv4 address 172.67.209.173, which is owned by Cloudflare’s global edge network. The domain appears on one security blocklist and has been explicitly blocked by the PhishDestroy service. VirusTotal records show that one out of ninety‑one scanning engines flagged the domain, confirming at least a minimal level of malicious detection.
The domain is currently listed as active, and no evidence of takedown or remediation has been observed. The available intelligence does not include a page title, SSL certificate details, HTTP response codes, or any observed content, so the specific payload or impersonated brand cannot be confirmed at this time. The limited detection footprint—single vendor flag and a solitary blocklist entry—suggests that the campaign may be in an early deployment phase or that broader detection coverage has not yet been achieved. Nonetheless, the combination of recent registration, Cloudflare hosting, and blocklist inclusion aligns with typical infrastructure patterns employed by phishing operators.
Defenders should consider adding coinmexchange.com to network‑level deny lists and endpoint protection rule sets, especially given its classification as a high‑risk generic phishing campaign. Continuous monitoring of passive DNS feeds for additional IPs or resolver changes is advisable, as Cloudflare may serve the domain from multiple edge locations. Organizations should also incorporate the domain into threat‑intel sharing platforms to accelerate collective detection. Until further content analysis is available, the safest posture is to treat any communication referencing coinmexchange.com as malicious and to block or quarantine associated traffic.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
Хронологія виявлення
-
Перший запис
Перше збережене значення: Доступний
-
Статус домену
Доступний → Недоступний
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 5 технологій із високою впевненістю
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of coinmexchange.com · checked Aug 5, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога