net-coinbase-us[.]framer[.]ai
“Coinbase Signin | Access Your Coinbase Account Safely”
net-coinbase-us.framer.ai — Контент недоступний. Уособлення бренду: Coinbase; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 17/95 (ADMINUSLabs, ChainPatrol, Criminal IP, alphaMountain.ai, CRDF); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: CSC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain presents a direct threat to users by impersonating Coinbase, a major cryptocurrency exchange platform. The site mimics the official Coinbase sign-in page, tricking visitors into entering their account credentials, which are then captured by malicious actors. Such credential harvesting can lead to unauthorized access, financial theft, and further exploitation of compromised accounts. The page title, 'Coinbase Signin | Access Your Coinbase Account Safely,' is crafted to appear legitimate and lower user suspicion during interaction. Analysis indicates the domain was registered on January 06, 2018, through CSC Corporate Domains, Inc., a registrar commonly used for both legitimate and fraudulent purposes. The domain is flagged by 17 out of 95 security vendors on VirusTotal, reflecting a consensus among multiple detection engines regarding its malicious nature. Additionally, the site was hosted on infrastructure belonging to Amazon.com, Inc. (AS16509) and resolved to the IP address 35.71.142.77, a common pattern observed in phishing campaigns leveraging cloud services for rapid deployment and takedown evasion. If you visited net-coinbase-us.framer.ai and entered login credentials, immediate action is required. First, change your Coinbase password using the official website or application from a secure device. Enable multi-factor authentication if not already active. Monitor your account for unauthorized transactions or suspicious activity, and report any anomalies to the platform’s support team. Avoid clicking on links from unsolicited emails or messages, and verify the authenticity of any login page by checking the URL and SSL certificate issuer. Let’s Encrypt certificates, while valid, are frequently used in phishing sites due to their free and automated issuance process.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога