apps[.]krakenapp[.]gr[.]com
Phishing- und Sicherheitsprüfung für apps.krakenapp.gr.com
“Problem loading page”
apps.krakenapp.gr.com — Inhalt nicht verfügbar (HTTP 502). Markenidentität: Kraken; Betrugstyp: Impersonation. Zusammenfassung der Beweislage: VirusTotal 3/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft); URLQuery 1 alert; Spamhaus DBL_ABUSED_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Evidence Analysis
Analysis as of July 26 2026 indicates that the domain apps.krakenapp.gr.com is actively serving a generic phishing payload. The host resolves to the IPv4 address 31.76.240.218. No authoritative nameserver information was returned (NS_NOT_FOUND), which hampers further DNS‑based attribution. VirusTotal reports that 2 of 91 scanned security vendors flagged the domain as malicious, providing an early indication of compromise.
The domain currently appears on three external blocklists and is explicitly blocked by the PhishDestroy, MetaMask, and SEAL filtering platforms, confirming its classification as high‑risk. The HTTP response includes a page title of “Problem loading page”, suggesting that the malicious content may be unavailable or that the site is deliberately presenting an error page to evade casual inspection. The threat is listed as generic phishing with a high risk rating, and the operational status is marked as active. Defenders should add apps.krakenapp.gr.com to URL filtering rules and ensure that the associated IP address 31.76.240.218 is denied at network perimeter devices.
Continuous monitoring of the IP reputation and periodic re‑query of public threat feeds are recommended, as the lack of nameserver data may indicate dynamic hosting. Updating endpoint protection signatures to reflect the two vendor detections will improve detection coverage. Because the domain is already listed on multiple blocklists, correlation with internal logs can help identify any successful exploitation attempts. Organizations should treat any traffic to this domain as malicious and quarantine related artifacts for forensic analysis.
Datenabdeckung12 recorded checks
Erkenntnisse zur Netzwerksicherheit
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | apps.krakenapp.gr.com |
malicious | Sinkholed |
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 1 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100 % KonfidenzVirusTotal-Analyse
Nachweise und externe BerichteIndependent lookups and source reports
PD-20260726-1CEAE2 Recipient: abuse@intezio.net Victim safety and official reportingImmediate actions and verified reporting channels
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.