coinbasepool[.]vip
证据摘要
The domain coinbasepool.vip was registered on 21 February 2026 and is currently taken offline. VirusTotal records show that five of ninety‑five scanned security vendors flagged the domain as malicious, providing a moderate detection consensus. The domain resolves to the IPv4 address 191.101.14.231, which is hosted in the United States by the commercial provider Hostinger. This IP appears on a single public security blocklist, and the domain itself is listed on the PhishDestroy blocklist, confirming that defensive feeds have already classified it as hostile.
Intelligence attributes the site to a crypto‑scam campaign that impersonates the Coinbase brand, matching the declared brand target of Coinbase. No additional infrastructure details such as ASN, SSL certificate information, page title, or HTTP status codes are available because the site is no longer reachable. The elevated risk level reflects the combination of brand impersonation and cryptocurrency‑related financial loss potential.
The short lifespan of the domain and its rapid appearance in multiple threat feeds suggest an opportunistic, drop‑and‑replace operation typical of campaigns that exploit newly registered domains to harvest credentials or funds. Defenders should deny any outbound connections to 191.101.14.231, add coinbasepool.vip to DNS and URL block lists, and monitor WHOIS records for any re‑registration attempts that reuse the same naming pattern or hosting provider. Continuous use of the PhishDestroy feed and other blocklists is recommended to prevent exposure to similar brand‑impersonation crypto scams.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
已保存的截图
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控