auth-apps-kucoin-sso--c-cdn.webflow.io
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of auth-apps-kucoin-sso--c-cdn.webflow.io
This domain appears to host a webpage styled to resemble the KuCoin cryptocurrency platform, using KuCoin branding, navigation labels, and sign-in or sign-up prompts. The page title and metadata present it as a login or account-access page for a crypto trading service, and the screenshot shows exchange-related content such as markets, derivatives, coins, and trading volume figures.
However, the site is not hosted on KuCoin's primary domain and instead uses a Webflow subdomain with a long, brand-referencing name. Based on the domain structure and page presentation, it appears likely that the page was created by an unrelated party rather than operated through KuCoin's official web presence. The overall purpose may be to imitate a cryptocurrency exchange landing or authentication page.
Safety Assessment for auth-apps-kucoin-sso--c-cdn.webflow.io
Multiple risk indicators were present at the time of this scan. The domain was flagged by 15 out of 91 security engines, with detections broadly describing phishing or malicious behavior. In addition, the domain closely resembles kucoin.com in plain language and may be a look-alike intended to benefit from confusion with the legitimate KuCoin brand. The screenshot reinforces that concern because it prominently uses KuCoin branding while operating from a third-party Webflow subdomain rather than an official KuCoin domain.
Blacklist and threat-database results were mixed rather than uniformly clean. Major content-malice databases included in the scan did not report active listings at the time of review, but the domain's IP address was listed on one mail-reputation blocklist, which is a weaker signal and does not by itself prove harmful website content. The malware file scan itself did not detect flagged files, but that does not outweigh the stronger phishing-style indicators from the domain naming pattern, page presentation, and multi-engine consensus.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was served over HTTPS with a valid TLS certificate issued by Google Trust Services, and traffic appears to be proxied through Cloudflare infrastructure on IP address 104.18.36.248. The nameservers also point to Cloudflare, while the page assets are loaded from Webflow-related content delivery infrastructure. This setup is common for legitimate sites as well as temporary hosted pages, so it should not be treated as a trust signal by itself.
DNSSEC appears to be unsigned at the time of this scan. The underlying webflow.io domain is old, but that age mainly reflects the long-standing parent platform domain rather than proving that this specific branded subpage is established or trustworthy. A referenced external endpoint on an azurewebsites.net host may warrant additional scrutiny in a deeper investigation.
Share your experience with this website. Was it safe? Did you encounter any issues?