coinbase-commerce[.]gives
“Receipt for Incoming Transfer - Coinbase Commerce”
Tóm tắt bằng chứng
This domain, coinbase-commerce.gives, is confirmed as a brand impersonation scam specifically targeting Coinbase users. Analysis indicates the site was designed to mimic Coinbase Commerce, likely for credential theft or fraudulent transaction authorization. The domain is currently offline but was operational during its active window, presenting a receipt-themed page titled 'Receipt for Incoming Transfer - Coinbase Commerce' to deceive victims. Infrastructure analysis reveals the domain was registered on February 09, 2026, through Global Domain Group LLC, an uncommon registrar for legitimate Coinbase-affiliated properties. It resolved to IP address 104.21.48.175, hosted on Cloudflare's network (AS13335), a common obfuscation tactic used by threat actors. The domain appears on three distinct security blocklists and is flagged by 25 of 95 VirusTotal vendors, indicating broad consensus on its malicious nature. Additional technical indicators include its inclusion in the blocklists of at least three major security frameworks, further validating its high-risk classification. While the domain is currently offline, its prior activity and infrastructure warrant continued monitoring. Organizations and users are advised to block the domain at the DNS or network level to prevent accidental access if it reactivates. Security teams should review logs for connections to 104.21.48.175 or requests to coinbase-commerce.gives, particularly those preceding February 2026. Coinbase users should be alerted to verify the authenticity of any communications or pages claiming to be from Coinbase Commerce, especially those involving transaction receipts or account verification prompts. Proactive measures include implementing strict domain validation policies and educating users on identifying brand impersonation tactics.
Ảnh chụp bằng chứng đã gửi
- Đã gửi
- Bản ghi sổ cái
- 1
- Mã vụ việc
PD-20260317-1BADB8- Tiêu đề trang đã chụp
- Receipt for Incoming Transfer - Coinbase Commerce
- Tệp PDF
- Bằng chứng PDF
Cơ sở pháp lý
Toàn văn bằng chứng
Acceptable Use Policy (AUP): The domain coinbase-commerce.gives is engaged in phishing activities, which directly contravenes the AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing use of this domain for phishing constitutes a clear violation of these terms.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which is relevant as phishing schemes typically involve unauthorized access to sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities using electronic communications, applicable to the fraudulent activities conducted via this domain.
Anti-Phishing Consumer Protection Act: This act aims to combat phishing by prohibiting the use of deceptive emails and websites, which is directly relevant to the operations of coinbase-commerce.gives.
Regulatory Note: Failure to take immediate action against this domain may result in regulatory scrutiny and potential liability under applicable laws. It is imperative to comply with your AUP and TOS to mitigate risks associated with domain abuse.
Data Coverage
Tình báo an ninh mạng
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | coinbase-commerce.gives |
malicious | Sinkholed |
Pipeline ứng phó với các mối đe dọa
Phạm vi danh sách chặn
10 nguồn ngoài được giám sát · ảnh chụp lưu ngày 13/08/2026
Dòng thời gian phát hiện
-
VirusTotal
0 → 2
Bản chụp đã lưu
Thông tin về tên miền
Chi tiết kỹ thuậtDNS, tên TLS và mốc thời gian
ICANN OVERSIGHT
Bối cảnh công nhận và RAA
Bối cảnh công nhận và RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tình báo pháp chứng
Phân tích của VirusTotal
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of coinbase-commerce.gives · checked Mar 17, 2026
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai