coinstrpt[.]click
“coinstrpt.click | 523: Origin is unreachable”
Зведення доказів
This domain, coinstrpt.click, is identified as a phishing infrastructure specifically designed to impersonate cryptocurrency wallet platforms for credential harvesting. Analysis indicates the domain is currently offline, though prior activity suggests it targeted users seeking wallet access or recovery services. The threat type aligns with generic phishing but exhibits characteristics of targeted financial fraud, likely aiming to capture login credentials, private keys, or recovery phrases. Infrastructure analysis reveals the domain was registered through NAMECHEAP INC on June 12, 2026, an unusual future date that may indicate domain spoofing or registry manipulation. It resolves to the IP address 188.114.96.3 and employs Cloudflare services, including HTTP/3, to obfuscate its origin. The domain holds a Gridinsoft trust score of 0 out of 100 and is flagged by 4 of 95 security vendors on VirusTotal. It appears in four AlienVault OTX threat intelligence pulses and is listed on one security blocklist. The SSL certificate is issued by Google Trust Services, a common tactic to lend false legitimacy to malicious sites. The page title, 'coinstrpt.click | 523: Origin is unreachable,' suggests recent takedown efforts or backend failures. Current status confirms the domain is offline, though its infrastructure remains a residual risk. Organizations and individuals are advised to block the domain and its associated IP (188.114.96.3) at the network level. Security teams should monitor for related domains registered through the same registrar or resolving to identical infrastructure. Users who may have interacted with the domain should immediately revoke any exposed credentials, enable multi-factor authentication on cryptocurrency wallets, and scan systems for malware. Given the domain's use of Cloudflare and Google Trust Services, defenders should prioritize detection of similar patterns in future phishing campaigns.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
3 → 4
-
Статус домену
Доступний → Недоступний
-
Статус домену
Недоступний → Доступний
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 2 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of coinstrpt.click · checked Jun 25, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога