Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@ovh.net.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
dosidicus[.]kraken[.]malwarebox[.]eu
“Kraken”
dosidicus.kraken.malwarebox.eu — Non vérifié. Usurpation de l'identité de la marque : Kraken; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 85/100. Bureau d’enregistrement: Namecheap.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain dosidicus.kraken.malwarebox.eu, which impersonates the cryptocurrency exchange Kraken, has been flagged by 6 out of 91 vendors on VirusTotal. It is also listed on three public blocklists, including PhishDestroy, MetaMask, and SEAL. The site is currently offline, reducing immediate risk, but its previous activity highlights the ongoing threat of phishing attacks targeting cryptocurrency platforms.
Registered through Namecheap, Inc., the domain was set up with SSL certification from Let's Encrypt, indicating an attempt to appear legitimate. The hosting IP, 51.77.44.29, was used to serve phishing content aimed at deceiving users into divulging sensitive information under the guise of Kraken's branding. The takedown of the site limits its reach, but the initial detection underscores the importance of rapid response to emerging threats.
Despite the site being offline now, the fact that it was flagged by multiple security vendors and blocklists shows the effectiveness of collaborative threat intelligence efforts. PhishDestroy's inclusion of the domain in its blocklist, alongside other security entities, highlights the critical role of real-time threat detection and information sharing in mitigating phishing risks. The case of dosidicus.kraken.malwarebox.eu serves as a reminder of the persistent threat phishing poses to digital assets and the need for continuous vigilance in cybersecurity practices.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Données factuelles et rapports externes
PD-20260608-78674D Recipient: abuse@ovh.net Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif