access--kucoinhelp-view-cdn-x[.]webflow[.]io
“KuCoin: Sign-in | Access Your Crypto Portfolio*”
access--kucoinhelp-view-cdn-x.webflow.io — Неперевірений. Уособлення бренду: KuCoin; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 18/91 (AILabs (MONITORAPP), alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Webflow.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis indicates that the domain access--kucoinhelp-view-cdn-x.webflow.io is actively hosting a brand‑impersonation page targeting KuCoin users. The site was registered on June 12 2026 through Webflow and immediately resolved to the Cloudflare IP 104.18.36.248, located in the United States (AS13335). The TLS certificate is issued by Google Trust Services (WE1) and the HTTP response returns status 200. Detected technologies include Webflow, jQuery, Cloudflare and HTTP/3, consistent with a typical fraudulent landing page hosted on a shared SaaS platform. VirusTotal reports that 16 of 91 scanned security vendors flag the domain, and it appears on at least one public blocklist; PhishDestroy has already listed it as blocked. The page title “KuCoin: Sign‑in | Access Your Crypto Portfolio*” explicitly references the target brand, confirming a brand‑impersonation intent. Gridinsoft assigns a trust score of 0 / 100, reinforcing the malicious assessment. While the exact phishing kit or credential‑harvesting mechanism has not been disclosed, the combination of a recent registration, high‑risk classification, and multiple vendor detections suggests a high likelihood of credential theft. Defenders should block the domain at the DNS and proxy layers, monitor for outbound connections to the associated IP, and alert users that any login request originating from this URL is fraudulent. Ongoing observation is recommended to capture any changes in hosting or content.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
Webflow is Software-as-a-Service (SaaS) for website building and hosting.
webflow.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога