secure-eng-kucoin[.]framer[.]ai
“KuCoin® Sign-In Portal | Your Gateway to Advanced Trading⢔
secure-eng-kucoin.framer.ai — No verificado. Suplantación de marca: KuCoin; Tipo de estafa: Impersonation. Resumen de las pruebas: VirusTotal 11/91 (alphaMountain.ai, ESET, Emsisoft, Forcepoint ThreatSeeker, Fortinet); URLScan malicious verdict; PhishDestroy score 83/100. Registrador: Framer.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Analysis of the domain secure-eng-kucoin.framer.ai, observed on 5 August 2026, classifies it as a credential‑phishing infrastructure. Registration data show the domain was created through Framer B.V., a registrar associated with the framer.ai sub‑domain space. The domain resolves to the single IPv4 address 31.43.160.6; no nameserver records were returned during lookup, indicating either misconfiguration or deliberate concealment of DNS infrastructure. Automated scanning on VirusTotal involved 91 antivirus and URL‑reputation engines; none reported a detection, but the absence of a flag does not constitute evidence of benign intent.
The domain is currently listed on one public security blocklist and has been actively blocked by the PhishDestroy sinkhole, confirming that threat‑intel feeds have identified it as malicious. The campaign remains active, with the risk level marked as “under investigation” by internal tracking. Observed indicators suggest that the operator is leveraging the framer.ai hosting platform to host credential‑phishing pages, likely targeting users of the KuCoin cryptocurrency exchange, as implied by the domain label.
Defensive recommendations include adding the domain and its resolving IP address to outbound and inbound firewall deny lists, updating URL filtering policies, and ensuring that endpoint protection solutions receive the latest threat‑intel feeds. Continuous monitoring of DNS queries for the domain and periodic re‑scanning with sandbox tools are advised to detect any changes in payload or hosting configuration. Organizations should also educate users about unsolicited login requests that reference KuCoin and encourage verification of URLs before credential entry.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 4 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100 % de confianzaReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100 % de confianzaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of secure-eng-kucoin.framer.ai · checked Aug 5, 2026
Análisis de la configuración del sitio
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.