Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
kra38at[.]com
“kra38.at”
Analysis of kra38at.com indicates a high-risk phishing domain targeting cryptocurrency users, specifically mimicking the Kraken exchange as suggested by the page title 'kra38.at'. The domain was registered on March 27, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, and currently resolves to IP address 188.114.96.3. Infrastructure analysis reveals the use of Cloudflare services, including Cloudflare Browser Insights and HTTP/3, which are commonly employed to obscure hosting details and evade detection. The SSL certificate is issued by Google Trust Services, a legitimate provider often exploited in phishing operations to appear trustworthy. The domain is actively flagged by multiple security sources: it appears in 22 AlienVault OTX threat intelligence pulses and is listed on four security blocklists. Detection engines, including SEAL, MetaMask, PhishDestroy, and BLP-Malware, have classified this domain as malicious. While the exact content of the site has not been analyzed, the page title and widespread blocking by crypto-focused security tools strongly suggest it is designed to deceive users into disclosing credentials or transferring assets. Defenders should treat this domain as confirmed malicious infrastructure. Immediate actions include blocking the domain and IP at network and endpoint levels, monitoring for connections to 188.114.96.3, and alerting users to potential phishing attempts referencing Kraken or similar branding. Given the domain's recent registration and active status, further monitoring for related domains or IP shifts is recommended.
سجل البلاغ المرسل
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260327-BA663F- عنوان الصفحة الملتقطة
- kra38.at
- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
استخبارات أمن الشبكات Registrar context
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
10 مصادر · تمت المزامنة في 09/08/2026
أدلة النتيجة المحفوظة
النتيجة وإسناد الإزالة
- النتيجة
live_content- السبب
content_served- درجة الثقة
- 90%
المخطط الزمني للاكتشاف
الملاحظات المحفوظة بترتيب زمني.
-
VirusTotal
VirusTotal: 2 ← 13
-
VirusTotal
VirusTotal: 13 ← 15
-
التوفر
التوفر: رُصد أول مرة بالحالة unknown
993d00c35140 -
التوفر
التوفر: unknown ← live_content
9dbdf36e36f0 -
التوفر
التوفر: live_content ← unknown
f1019bcaa60d -
التوفر
التوفر: unknown ← live_content
9b2bbaa62c8a -
التوفر
التوفر: live_content ← unknown
7cebcfd4071c -
التوفر
التوفر: unknown ← live_content
9aba1430b5fc -
التوفر
التوفر: live_content ← unknown
ca255b61650a -
التوفر
التوفر: unknown ← live_content
60c3aa46265b
عرض الكل (2)
-
التوفر
التوفر: live_content ← unknown
d8f7d37d7f95 -
التوفر
التوفر: unknown ← live_content
489142fcdf89
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of kra38at.com · checked Jul 13, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب