secure-eng-kucoin[.]framer[.]ai
“KuCoin® Sign-In Portal | Your Gateway to Advanced Trading⢔
secure-eng-kucoin.framer.ai — لم يتم التحقق منها. انتحال العلامة التجارية: KuCoin; نوع الاحتيال: Impersonation. ملخص الأدلة: VirusTotal 11/91 (alphaMountain.ai, ESET, Emsisoft, Forcepoint ThreatSeeker, Fortinet); URLScan malicious verdict; PhishDestroy score 83/100. مسجّل النطاق: Framer.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of the domain secure-eng-kucoin.framer.ai, observed on 5 August 2026, classifies it as a credential‑phishing infrastructure. Registration data show the domain was created through Framer B.V., a registrar associated with the framer.ai sub‑domain space. The domain resolves to the single IPv4 address 31.43.160.6; no nameserver records were returned during lookup, indicating either misconfiguration or deliberate concealment of DNS infrastructure. Automated scanning on VirusTotal involved 91 antivirus and URL‑reputation engines; none reported a detection, but the absence of a flag does not constitute evidence of benign intent.
The domain is currently listed on one public security blocklist and has been actively blocked by the PhishDestroy sinkhole, confirming that threat‑intel feeds have identified it as malicious. The campaign remains active, with the risk level marked as “under investigation” by internal tracking. Observed indicators suggest that the operator is leveraging the framer.ai hosting platform to host credential‑phishing pages, likely targeting users of the KuCoin cryptocurrency exchange, as implied by the domain label.
Defensive recommendations include adding the domain and its resolving IP address to outbound and inbound firewall deny lists, updating URL filtering policies, and ensuring that endpoint protection solutions receive the latest threat‑intel feeds. Continuous monitoring of DNS queries for the domain and periodic re‑scanning with sandbox tools are advised to detect any changes in payload or hosting configuration. Organizations should also educate users about unsolicited login requests that reference KuCoin and encourage verification of URLs before credential entry.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com ثقة 100٪React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org ثقة 100٪HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of secure-eng-kucoin.framer.ai · checked Aug 5, 2026
تحليل إعدادات الموقع
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب