pay[.]coinbese[.]cc
“码支付 - 扫码支付,免签支付,聚合支付,码支付免签约”
pay.coinbese.cc — 内容不可用. 品牌冒充:Coinbase; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 5/95 (ADMINUSLabs, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 65/100. 注册商: Gname.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This technical report details a malicious domain impersonating the Coinbase brand. The site, pay.coinbese.cc, displayed a page title referencing a Chinese payment service, indicating it was likely a phishing page designed to harvest cryptocurrency credentials or payment information. The primary threat is credential theft and financial fraud, targeting Coinbase users through a typosquatting domain.
Technical analysis confirms the malicious nature of this site. VirusTotal detected 5 out of 95 vendors as malicious, with specific flags from ADMINUSLabs, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, and Fortinet. The domain is listed on one blocklist. It was registered on 2025-01-04 via Gname.com Pte. Ltd., hosted at IP address 23.225.34.170 in the United States, belonging to AS40065 CNSERVERS LLC. The domain uses nameservers a4.share-dns.com and b4.share-dns.net, and has no SSL certificate. GridinSoft trust rating is 0/100.
The domain is currently offline. Based on the low VirusTotal detection rate and zero trust score, the risk level for users who previously visited the site is high, as the page was designed to capture sensitive information. The domain should be permanently blocked.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。