kukooinlogoni[.]webflow[.]io
“Crypto Exchange | Bitcoin Exchange | Bitcoin Trading | KuCoin”
Zusammenfassung der Beweislage
PhishDestroy identifies kukooinlogoni.webflow.io as a **fake login portal phishing domain** currently under investigation but actively hosting malicious content. This fraudulent site impersonates legitimate authentication interfaces to harvest user credentials, posing significant risks to unsuspecting visitors. The domain is hosted on Webflow’s infrastructure (IP: 172.64.151.8) and leverages Google Trust Services SSL certificates to appear legitimate, increasing the likelihood of successful deception. Due to its active status and low detection rates, this threat requires immediate scrutiny from security teams and end-users alike. This domain exhibits several red flags confirmed by authoritative sources. VirusTotal currently flags the site with **0 detections out of 95 engines**, indicating it has evaded widespread recognition despite its malicious intent. The domain resolves to Cloudflare IP range (172.64.151.8), a common hosting provider often exploited by threat actors to obscure malicious infrastructure. While Google Trust Services issued the SSL certificate, this alone cannot validate the domain’s legitimacy—a critical consideration for phishing prevention. Webflow’s domain registration obscures ownership details, and no known blocklists have flagged this domain yet. The absence of historical data suggests recent deployment, typical of opportunistic credential-harvesting campaigns. To mitigate risks associated with fake login portal phishing, users should verify URLs meticulously before inputting credentials. Never trust unsolicited login prompts, even those appearing legitimate via HTTPS. Organizations should deploy browser-based phishing detection tools and educate employees on identifying spoofed domains. Report suspicious activity to PhishDestroy or local CERT teams to aid ongoing threat intelligence efforts. Immediate actions include blocking the domain at the network perimeter and scanning endpoints for unauthorized credential submissions.
Data Coverage
Erkenntnisse zur Netzwerksicherheit
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | kukooinlogoni.webflow.io |
malicious | Sinkholed |
| Cloudflare DNS | kukooinlogoni.webflow.io |
malicious | Sinkholed |
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 11.08.2026
Technologien
3 Technologien mit hoher Konfidenz erkannt
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of kukooinlogoni.webflow.io · checked Apr 27, 2026
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt