kuc.fmr-max789.com
“KUCOIN”
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is hksupport@domainipr.net.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
kuc.fmr-max789.com — Последний известный активный (HTTP 200). Олицетворение бренда: KuCoin; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 15/90 (BitDefender, Chong Lua Dao, ESET, Emsisoft, Forcepoint ThreatSeeker); URLQuery 4 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Регистратор: Domainipr.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Сводка доказательств
The domain kuc.fmr-max789.com is assessed as an elevated risk for brand impersonation. It is designed to deceive users by mimicking the well-known cryptocurrency exchange KuCoin, potentially leading to financial loss or credential theft.
Analysis indicates that kuc.fmr-max789.com was created on November 25, 2025, and is currently offline. The domain is registered through Domainipr Limited and uses an SSL certificate from Let's Encrypt / E8. The IP address 104.21.51.136, associated with AS13335 Cloudflare, Inc. in the United States, has been flagged by 22 out of 95 security vendors on VirusTotal. The domain appears on one security blocklist and is blocked by PhishDestroy. These findings suggest that the domain has been identified as part of a targeted attack against KuCoin users.
To mitigate the risks associated with brand impersonation, users are advised to verify the authenticity of any website claiming to be associated with KuCoin by checking the domain name and SSL certificate. Additionally, users should only access KuCoin through official channels and bookmarks, and avoid clicking on links from unverified sources. Security teams should monitor for similar domain registration patterns and IP addresses, and consider implementing DNS filtering and web security gateways to block access to such domains.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | kuc.fmr-max789.com |
phishing | Phishing Block |
| Cloudflare DNS | kuc.fmr-max789.com |
malicious | Sinkholed |
| Hagezi Threat Feed | kuc.fmr-max789.com |
malicious | Sinkholed |
| DNS4EU | kuc.fmr-max789.com |
malicious | Sinkholed |
Forensic History & Detection Timeline
-
Cloudflare Radar Scan Jun 26, 2026 · 05:34 UTCCloudflare Radar scan registered: View Radar report.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сбор доказательств
Статус в публичных блок-листах
Сохранённое наблюдение
Зафиксированное различие заголовков
Сохранённый снимок · 3 sources
Аналитика доменов
Технические деталиDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: fmr-max789.com
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain fmr-max789.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 5 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Сообщения сообщества
Сообщил 1 участник сообщества; впервые замечено 11.06.2026
- Сохранённые сообщения
- 1
- Уникальные URL
- 1
Доказательства и внешние отчеты
PD-20260611-D05102 Recipient: hksupport@domainipr.net Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание