kucucoinlogeu[.]godaddysites[.]com
“Kucoin Login : Crypto Exchange | Bitcoin Exchange”
kucucoinlogeu.godaddysites.com — Letzter bekanntermaßen aktiv (HTTP 200). Markenidentität: KuCoin; Betrugstyp: Impersonation. Zusammenfassung der Beweislage: VirusTotal 16/91 (alphaMountain.ai, Chong Lua Dao, ESET, Emsisoft, Forcepoint ThreatSeeker); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Registrar: GoDaddy.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Analysis indicates that the sub‑domain kucucoinlogeu.godaddysites.com is presently active and resolves to the IPv4 address 13.248.243.5. The domain is registered through GoDaddy.com, LLC, and its authoritative name servers are not reported (NS_NOT_FOUND). VirusTotal has processed the domain and 10 of 91 scanned security vendors returned a detection, confirming that multiple AV engines consider the host malicious. The domain is listed on a single external security blocklist and is actively blocked by the PhishDestroy feed, which classifies it as a generic phishing site.
No additional intelligence such as page title, SSL certificate details, HTTP response codes, or Safe Browsing verdicts were supplied, so the exact content of the site remains unverified. The available evidence therefore supports a high‑risk rating. Defenders should add the fully qualified domain name and its resolved IP address to perimeter deny lists, enforce DNS‑level sink‑holing, and monitor outbound traffic for connections to 13.248.243.5.
Continuous re‑evaluation is advised, as the lack of visible page‑level indicators means further analysis may reveal additional tactics, techniques, or procedures. Organizations that rely on GoDaddy‑hosted assets should be aware that the platform can be leveraged for phishing infrastructure, and any internal use of similar sub‑domains should be scrutinized. Until a definitive content analysis is performed, the domain should be treated as malicious and blocked across all security controls.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Registration: godaddysites.com
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For the registrable domain godaddysites.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologien · 3 identified
RequireJS is a JavaScript library and file loader which manages the dependencies between JavaScript files and in modular programming.
requirejs.org 100 % KonfidenzHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % KonfidenzVirusTotal-Analyse
Archivierte Beweise
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt