lgiinkuconn[.]webflow[.]io
“KuCoin Login | Securely Access Your Digital Account”
ملخص الأدلة
Analysis of lgiinkuconn.webflow.io confirms it as an active brand-impersonation phishing domain targeting KuCoin users. The domain, registered on November 10, 2025, through Webflow, presents itself as a KuCoin login portal with the page title 'KuCoin Login | Securely Access Your Digital Account,' directly referencing the cryptocurrency exchange. Infrastructure analysis reveals Cloudflare hosting (IP 104.18.36.248, CA) and SSL certification via Google Trust Services (WE1), typical of phishing campaigns leveraging reputable CDN providers to evade detection. The domain is flagged by 16 of 91 security vendors on VirusTotal and appears on at least one blocklist, including PhishDestroy. Scamadviser and Gridinsoft assign trust scores of 1/100 and 0/100, respectively, further corroborating its malicious classification as a crypto scam. Technologies detected include Webflow, Google Hosted Libraries, Google Font API, and HTTP/3, consistent with modern phishing kits designed to mimic legitimate platforms. No evidence suggests the domain has been taken down; it remains active with an HTTP 200 status as of July 12, 2026. Defenders should prioritize blocking the domain and its resolving IP (104.18.36.248) at network and endpoint levels. Organizations should also monitor for credential submissions or wallet interactions originating from this domain, particularly in environments where KuCoin is used. The exact phishing kit or payload delivery mechanism is not yet analyzed, but the domain’s structure and hosting align with credential-harvesting campaigns targeting cryptocurrency users.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
0 ← 18
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of lgiinkuconn.webflow.io · checked Mar 20, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب