kucoin-login-account[.]blogspot[.]com
“Kucoin”
kucoin-login-account.blogspot.com — Неперевірений. Уособлення бренду: KuCoin; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 18/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 100 det.; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Реєстратор: MarkMonitor.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, kucoin-login-account.blogspot.com, is flagged as a brand impersonation threat targeting KuCoin, a cryptocurrency exchange platform. Analysis indicates the domain mimics legitimate KuCoin login interfaces to facilitate credential theft, a common tactic in cryptocurrency-related fraud. No direct evidence of a crypto drainer kit was observed, but the domain’s structure and content align with credential harvesting campaigns designed to compromise user accounts and enable unauthorized transactions. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 142.250.186.65, hosted on Google LLC’s AS15169 in Germany. It is registered through MarkMonitor, Inc., with a creation date of February 24, 2026, which may indicate an attempt to appear legitimate or evade detection. The domain appears on one security blocklist and is flagged by 17 out of 95 security vendors on VirusTotal. The SSL certificate is issued by Google Trust Services (WE2), a common practice for malicious domains leveraging free or automated certificate issuance. The page title, 'Kucoin,' further confirms the intent to impersonate the legitimate KuCoin platform. As of the latest assessment, the domain has been taken offline, reducing immediate risk to users. However, the infrastructure remains a potential vector for future malicious activity, particularly if the actors re-deploy the domain or replicate the attack using similar naming conventions. Users who may have interacted with this domain are advised to rotate credentials immediately, enable multi-factor authentication, and monitor accounts for unauthorized activity. Organizations should update blocklists to include this domain and its associated IP address to prevent future access attempts. The elevated risk level is retained due to the domain’s prior use in credential theft and its potential for reactivation.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 6 identified
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of kucoin-login-account.blogspot.com · checked Mar 1, 2026
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога