kcoin-app[.]com
“KuCoin”
Analysis of kcoin-app.com indicates a freshly registered domain created on 13 March 2026 that is currently offline. The site presents a page title of “KuCoin”, aligning with the listed brand target KuCoin and the classification as a crypto‑scam. No TLS certificate is observed, meaning the domain serves content over plain HTTP, which is atypical for legitimate financial services. Infrastructure inspection reveals the domain is hosted behind Cloudflare, using the IP address 188.114.97.3 located in Canada and employing Cloudflare’s DNS with the nameservers carlane.ns.cloudflare.com and trace.ns.cloudflare.com. The web stack includes Node.js, React, Next.js, Webpack and HTTP/3, all common components for modern web applications, but their presence alone does not confirm legitimacy.
Reputation services provide strong negative signals: Gridinsoft assigns a trust score of 0 / 100, and the domain appears on one security blocklist. VirusTotal reports that 16 of 94 scanning engines flagged the site, reinforcing the malicious assessment. The domain has been added to the PhishDestroy blocklist, confirming that security teams have already taken mitigation steps. Registration was performed through Global Domain Group LLC, a registrar often used by abusive actors, further reducing confidence in the domain’s authenticity.
The absence of an SSL certificate, the low trust score, multiple vendor detections, and the explicit impersonation of KuCoin collectively indicate a high likelihood of credential‑harvesting or crypto‑theft activity. Defenders should continue to block the domain at perimeter firewalls, DNS resolvers, and endpoint protection solutions. Monitoring for related domains registered by the same registrar or pointing to the same Cloudflare IP is advisable, as threat actors frequently spin up new sites after takedowns.
Datensatz der ausgehenden Meldung
Momentaufnahme der übermittelten Beweise
- Gesendet
- Protokolleinträge
- 1
- Fall-ID
PD-20260322-E3C8C2- Titel der erfassten Seite
- KuCoin
- PDF-Artefakt
- PDF-Beweis
Rechtsgrundlage
Vollständiger Beweistext
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 Quellen · synchronisiert am 10.08.2026
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, TLS-Namen und Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Forensische Erkenntnisse
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of kcoin-app.com · checked Mar 22, 2026
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt