kra51cc[.]com
“KRAKEN”
The domain kra51cc.com is confirmed to engage in brand impersonation, specifically targeting the cryptocurrency exchange platform Kraken. The site was designed to deceive users into believing they were interacting with the legitimate Kraken brand. No specific drainer kit was identified in the initial analysis, but the domain's structure and content strongly suggest a deliberate attempt to mimic the official Kraken website.
Infrastructure analysis reveals that kra51cc.com has been flagged by 3 out of 95 security vendors on VirusTotal, indicating a moderate level of detection among the security community. The domain is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED and resolves to the IP address 172.67.218.93. It was created on March 27, 2026, and appears in one threat intelligence pulse on AlienVault OTX. The site is also listed on one security blocklist, specifically PhishDestroy. Despite these detections, the domain has not been flagged by Google Safe Browsing (GSB) as of the current analysis, which suggests a potential lag in broader recognition of the threat.
The domain kra51cc.com is currently offline, which may indicate that it has been taken down by security measures or the threat actors themselves. However, the offline status does not eliminate the risk entirely, as the domain could be reactivated at any time. It is recommended that users remain vigilant and avoid interacting with any links or content associated with this domain. Security teams should monitor the domain for any signs of reactivation and consider implementing additional blocks or alerts to protect against potential future threats. The elevated risk level underscores the need for ongoing vigilance and proactive defense strategies.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260327-0AAD15- عنوان الصفحة الملتقطة
- KRAKEN
- ملف PDF
- دليل PDF
النص الكامل للدليل
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
استخبارات أمن الشبكات Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | kra51cc.com |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 10/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
4 ← 3
-
التوفر
أول قيمة محفوظة: DNS غير نشط
f93a11f87e4d -
التوفر
DNS غير نشط ← غير معروف
51a87e981542 -
التوفر
غير معروف ← DNS غير نشط
238c6f6c032c -
التوفر
DNS غير نشط ← غير نشط
6bc3bf50a39a -
التوفر
غير نشط ← DNS غير نشط
f52d526b76a1 -
التوفر
DNS غير نشط ← غير معروف
75509fe794d6 -
التوفر
غير معروف ← غير نشط
f4d388006075 -
التوفر
غير نشط ← غير معروف
6ebf8e0645b7 -
التوفر
غير معروف ← DNS غير نشط
6dfe9145995c
عرض الكل (7)
-
التوفر
DNS غير نشط ← غير نشط
ae066499ffd2 -
التوفر
غير نشط ← DNS غير نشط
641ed81dc4d5 -
التوفر
DNS غير نشط ← غير معروف
3580039f257e -
التوفر
غير معروف ← غير نشط
8da2b44df46b -
التوفر
غير نشط ← غير معروف
58f5bacc91f9 -
التوفر
غير معروف ← DNS غير نشط
d0b7046e8c2f -
التوفر
DNS غير نشط ← غير نشط
0ead7e231351
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of kra51cc.com · checked Jun 26, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب