download[.]coinbasecnext[.]cc
download.coinbasecnext.cc — Контент недоступний. Уособлення бренду: Coinbase; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 13/95 (ChainPatrol, alphaMountain.ai, BitDefender, CRDF, CyRadar); Google Safe Browsing flagged; PhishDestroy score 89/100. Реєстратор: Amazon.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, download.coinbasecnext.cc, is identified as a high-risk brand impersonation threat targeting Coinbase users. The infrastructure is designed to deceive visitors into believing they are interacting with legitimate Coinbase services, likely aiming to harvest credentials or distribute malicious payloads under the guise of cryptocurrency-related activities. Analysis indicates the domain was crafted to exploit trust in the Coinbase brand, potentially leading to unauthorized account access or financial loss for unsuspecting victims.
Evidence supporting this assessment includes multiple technical indicators. The domain is flagged by 11 out of 95 security vendors on VirusTotal, confirming its malicious classification. It was registered through Amazon Registrar, Inc. on October 07, 2025, and resolves to the IP address 154.31.153.7, hosted on AS8796 (FASTNET DATA INC) in the United States. Additionally, the domain appears on one security blocklist, lacks an SSL certificate, and was previously flagged by Google Safe Browsing as phishing. The absence of encryption further increases the risk of data interception during interactions with the site.
Users who visited download.coinbasecnext.cc should take immediate action to mitigate potential compromise. Disconnect the device from the network and run a full antivirus scan to detect any installed malware. Reset passwords for Coinbase and any other accounts accessed from the same device, prioritizing those using similar credentials. Enable multi-factor authentication where available. Monitor financial accounts and transaction histories for unauthorized activity, and report any suspicious findings to the affected service providers. If sensitive data was entered on the site, consider contacting relevant authorities or identity protection services for further guidance.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога