get-coinbsse-com-sign[.]framer[.]ai
“Coinbase - Sign in”
get-coinbsse-com-sign.framer.ai — 内容不可用. 品牌冒充:Coinbase; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 12/94 (ChainPatrol, CRDF, Emsisoft, Fortinet, G-Data); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 86/100. 注册商: CSC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies get-coinbsse-com-sign.framer.ai as a Coinbase credential harvesting domain masquerading as a legitimate exchange login portal. The domain uses a Let's Encrypt SSL certificate and resolves to IP 31.43.160.6, suggesting infrastructure commonly abused in fake financial service impersonations. The threat actor leverages the framer.ai subdomain to lend false legitimacy to the phishing page, targeting users seeking Coinbase account access or password recovery. This domain remains undetected on public scanning platforms, with 17 out of 95 VirusTotal engines flagging it at the time of analysis. While the exact creation date and registrar data are not publicly disclosed, the active status and lack of blocklist inclusion indicate a recently deployed campaign. The absence of detections highlights the challenge of identifying low-signal phishing domains early in their lifecycle. Users who visited this domain should immediately check their browser history for unexpected redirects and avoid entering any credentials. If login details were submitted, users must change their Coinbase password immediately and enable two-factor authentication. Consider revoking any API keys or session tokens exposed during the interaction and monitor financial accounts for unauthorized activity. Report the domain to Coinbase and your local cybersecurity authority.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of get-coinbsse-com-sign.framer.ai · checked May 28, 2026
证据与外部报告
PD-20260410-26744E Recipient: abuse@framer.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。