kciuinlocun[.]webflow[.]io
“Crypto Exchange | Bitcoin Exchange | Bitcoin Trading | KuCoin”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
This domain, kciuinlocun.webflow.io, poses an elevated threat through brand impersonation targeting KuCoin, a major cryptocurrency exchange platform. Analysis indicates the domain replicates KuCoin’s official login interface, including identical page titles such as 'Crypto Exchange | Bitcoin Exchange | Bitcoin Trading | KuCoin,' to deceive users into submitting sensitive credentials, including usernames, passwords, and two-factor authentication codes. The objective appears to be unauthorized access to cryptocurrency wallets and financial theft, a common tactic in phishing campaigns targeting digital asset holders. Infrastructure analysis reveals the domain was registered through MarkMonitor, Inc. on March 6, 2026, though this date may reflect placeholder or falsified registration data. The domain resolves to IP address 104.18.36.248, located within the United States and associated with AS13335, Cloudflare, Inc. Security vendor detection metrics indicate 18 out of 95 engines flagged the domain as malicious on VirusTotal. Additionally, the domain appears on one security blocklist and is currently classified as offline. The SSL certificate, issued by Google Trust Services under the WE1 root, does not mitigate the underlying malicious intent. Users who accessed kciuinlocun.webflow.io should immediately revoke any entered credentials and enable multi-factor authentication on their legitimate KuCoin accounts. All sessions should be terminated, and a password reset initiated from KuCoin’s official domain. Devices used to access the phishing site should undergo malware scanning to detect potential secondary infections. Cryptocurrency wallet addresses linked to the account should be reviewed for unauthorized transactions, and users are advised to monitor for suspicious activity across all financial platforms.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | kciuinlocun.webflow.io |
malicious | Sinkholed |
| OpenDNS | kciuinlocun.webflow.io |
phishing | Phishing Block |
| DNS4EU | kciuinlocun.webflow.io |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
0 ← 13
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب