krakenexpert[.]cc
“Captcha”
Zusammenfassung der Beweislage
This domain, krakenexpert.cc, operates as a high-risk brand impersonation portal targeting Kraken cryptocurrency exchange users. Analysis indicates the site presents a fraudulent login interface designed to harvest credentials and potentially deploy crypto-draining malware. Victims who enter their account details risk immediate unauthorized access to their Kraken wallets, leading to asset theft or complete account compromise. The site may also prompt users to download malicious software disguised as security updates or trading tools, further escalating the threat to connected devices and stored funds. Infrastructure analysis reveals multiple concrete indicators of malicious activity. The domain was registered on September 03, 2025, through NameSilo, LLC, a registrar frequently associated with phishing operations. It currently resolves to IP address 188.114.96.3, hosted on Cloudflare infrastructure (AS13335), which is commonly exploited to conceal the true origin of fraudulent sites. The absence of a valid SSL certificate further undermines the site's legitimacy. Security validation from VirusTotal shows 9 out of 95 engines flagging the domain as malicious, while it appears on three independent blocklists, including PhishDestroy and SEAL. The page title, 'Captcha,' is a known tactic to delay user suspicion while backend scripts process stolen inputs. Users who have visited krakenexpert.cc should take immediate corrective actions to mitigate risk. First, disconnect any devices used to access the site from the internet and run a full antivirus scan to detect potential malware. If credentials were entered, log in to the legitimate Kraken platform from a clean device and change all passwords, enabling multi-factor authentication if not already active. Monitor account activity for unauthorized transactions and report any suspicious behavior to Kraken's official support channels. Additionally, consider revoking access to any connected third-party applications or API keys that may have been exposed. For enterprise users, network administrators should block the domain and IP address at the firewall level and alert employees to the ongoing threat.
Data Coverage
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 11.08.2026
Erkennungszeitleiste
-
Cloudflare Radar
Cloudflare-Radar-Scan gespeichert · Scan öffnen
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt