inter-coinprostart[.]framer[.]media
“Coinbase Pro® | Digital Asset Exchange®”
inter-coinprostart.framer.media — 内容不可用. 品牌冒充:Coinbase; 诈骗类型:Fake Exchange. 证据摘要: VirusTotal 1 detections (engine total unavailable) (ChainPatrol); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. 注册商: CSC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies inter-coinprostart.framer.media as an active phishing domain designed to trick cryptocurrency investors into surrendering wallet credentials or funds. The site mimics legitimate investment platforms to harvest sensitive data under the guise of profit opportunities. Criminals often weaponize free website builders like Framer to rapidly deploy fraudulent portals, exploiting user trust in familiar services. This specific domain employs a Let’s Encrypt SSL certificate to appear legitimate, masking its malicious intent behind a veneer of authenticity. Users who land here risk immediate financial theft or credential compromise, with no direct benefit beyond the attackers’ illicit gains. This domain was flagged by PhishDestroy due to its elevated risk profile and confirmed malicious behavior. Intelligence shows it resolves to IP address 31.43.161.6 and was detected by only 1 out of 95 VirusTotal security vendors at time of analysis. Such low detection rates highlight how threat actors exploit gaps in automated scanning, leveraging evasion tactics like dynamic infrastructure and obfuscated JavaScript to bypass defenses. While domain registration details are not publicly disclosed, the use of a Framer subdomain suggests a recent deployment—likely within days or weeks—aimed at capitalizing on trending investment narratives. If you visited inter-coinprostart.framer.media, take immediate action to protect your assets and identity. Disconnect from the internet to prevent any ongoing data exfiltration, then run a full antivirus scan on all devices used to access the site. Revoke any cryptocurrency wallet permissions granted to suspicious domains and monitor accounts for unauthorized transactions. Report the domain to your bank, wallet provider, and cybercrime authorities such as the FBI IC3 or your local cybercrime unit. Avoid clicking on any links or downloading files from this site in the future, and warn others who may have been exposed. Always verify investment platforms through official channels and use hardware wallets for crypto transactions to minimize exposure.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 置信度 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of inter-coinprostart.framer.media · checked May 9, 2026
证据与外部报告
PD-20260509-096FD3 Recipient: abuse@framer.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。