Why would this be phishing? The URLs its pointing to is straight on the Coinbase site, over HTTPS too.
https://coinbase.com/transactions/533aa310101a7b619b0001a5How did they sign emails to be as if they were sent from coinbase too?
The only reason this would be actually dangerous is if the coinbase servers themselves were hacked and were storing passwords...