kukooinlogoni[.]webflow[.]io
“Crypto Exchange | Bitcoin Exchange | Bitcoin Trading | KuCoin”
kukooinlogoni.webflow.io — Não verificado. Representação da marca: KuCoin; Tipo de golpe: Fake Exchange. Resumo das evidências: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 2 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Registrador: Webflow.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies kukooinlogoni.webflow.io as a **fake login portal phishing domain** currently under investigation but actively hosting malicious content. This fraudulent site impersonates legitimate authentication interfaces to harvest user credentials, posing significant risks to unsuspecting visitors. The domain is hosted on Webflow’s infrastructure (IP: 172.64.151.8) and leverages Google Trust Services SSL certificates to appear legitimate, increasing the likelihood of successful deception. Due to its active status and low detection rates, this threat requires immediate scrutiny from security teams and end-users alike. This domain exhibits several red flags confirmed by authoritative sources. VirusTotal currently flags the site with **0 detections out of 95 engines**, indicating it has evaded widespread recognition despite its malicious intent. The domain resolves to Cloudflare IP range (172.64.151.8), a common hosting provider often exploited by threat actors to obscure malicious infrastructure. While Google Trust Services issued the SSL certificate, this alone cannot validate the domain’s legitimacy—a critical consideration for phishing prevention. Webflow’s domain registration obscures ownership details, and no known blocklists have flagged this domain yet. The absence of historical data suggests recent deployment, typical of opportunistic credential-harvesting campaigns. To mitigate risks associated with fake login portal phishing, users should verify URLs meticulously before inputting credentials. Never trust unsolicited login prompts, even those appearing legitimate via HTTPS. Organizations should deploy browser-based phishing detection tools and educate employees on identifying spoofed domains. Report suspicious activity to PhishDestroy or local CERT teams to aid ongoing threat intelligence efforts. Immediate actions include blocking the domain at the network perimeter and scanning endpoints for unauthorized credential submissions.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | kukooinlogoni.webflow.io |
malicious | Sinkholed |
| Cloudflare DNS | kukooinlogoni.webflow.io |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
Webflow is Software-as-a-Service (SaaS) for website building and hosting.
webflow.com 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of kukooinlogoni.webflow.io · checked Apr 27, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo