krakenrpc[.]pages[.]dev
“MainNet Project”
Analysis identifies krakenrpc.pages.dev as an active brand impersonation domain targeting the Kraken cryptocurrency platform. The observed content uses the page title "MainNet Project" while presenting infrastructure characteristics consistent with credential harvesting or fraudulent onboarding workflows associated with cryptocurrency-themed phishing campaigns. Current telemetry indicates that the domain remains active and accessible at the time of assessment, supporting a high-risk classification due to the combination of brand abuse indicators and ongoing availability. The use of recognizable branding elements combined with generic project terminology increases the probability of user deception and unauthorized account access attempts.
Infrastructure analysis reveals that the domain resolves to IP address 188.114.96.3 and is hosted within AS13335 operated by Cloudflare, Inc. Registration records indicate that the domain was created on December 04, 2025 and was registered through Cloudflare, Inc. Reputation analysis shows that the domain currently appears on 1 security blocklist and has been specifically blocked by PhishDestroy. Detection telemetry indicates that 15 of 95 security vendors on VirusTotal classify the domain as malicious or phishing-related infrastructure. Additional threat intelligence confirms that Google Safe Browsing flags the domain for phishing activity. The site currently presents an SSL certificate issued by Google Trust Services using the WE1 issuing hierarchy, demonstrating that transport encryption is present despite the malicious assessment and should not be interpreted as evidence of legitimacy.
The domain remains active and should be treated as hostile infrastructure until independent verification demonstrates otherwise. Security teams should implement immediate blocking at network, DNS, proxy, and email security layers where applicable. Any credentials, wallet information, recovery phrases, authentication tokens, or account details entered through this infrastructure should be considered potentially compromised and subject to incident response procedures. Users encountering references to this domain should avoid interaction, preserve relevant artifacts for investigation, and verify access paths through trusted official channels rather than links delivered through messages, advertisements, or unsolicited communications. Continued monitoring is recommended due to the possibility of rapid content changes or infrastructure migration associated with phishing operations.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes · sincronizado el 09/08/2026
Cronología de detección
Observaciones almacenadas en orden cronológico.
-
VirusTotal
VirusTotal: 15 → 14
-
Observación almacenada
Observación almacenada: alive → dead
Inteligencia forense
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of krakenrpc.pages.dev · checked Mar 6, 2026
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.