krab7[.]im
Analyse phishing et sécurité de krab7.im
“Kraken - Действующие ссылки и практические руководства от экспертов”
krab7.im — Contenu indisponible (HTTP 502). Usurpation de l'identité de la marque : Kraken; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 2/91 (Gridinsoft, SOCRadar); CF Radar malicious; PhishDestroy score 71/100.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain krab7.im is currently flagged as an active brand impersonation threat specifically targeting Kraken, a well-known cryptocurrency exchange platform. This domain is designed to deceive users by mimicking legitimate Kraken services, potentially leading to unauthorized access or asset theft. Analysis indicates the domain remains operational and poses an elevated risk to individuals and organizations associated with the targeted brand. Infrastructure analysis reveals that krab7.im is flagged by 2 of 95 security vendors on VirusTotal, indicating limited but confirmed detection. The domain resolves to the IP address 172.67.189.135 and employs technologies such as PHP, HSTS, and Cloudflare, which are commonly used to obfuscate malicious activity and enhance domain resilience. The page title, "Kraken - Действующие ссылки и практические руководства от экспертов," suggests a focus on Russian-speaking users, further aligning with tactics observed in targeted brand impersonation campaigns. The domain appears on one security blocklist, reinforcing its classification as a malicious entity. Current status confirms that krab7.im remains active, with no indications of takedown or mitigation efforts. Users and organizations are advised to implement immediate countermeasures, including blocking the domain and associated IP address at the network perimeter. Security teams should monitor for any attempts to access krab7.im within their environments and conduct retrospective analysis to identify potential prior interactions. End-users should be educated on recognizing brand impersonation tactics, particularly those involving cryptocurrency platforms, and encouraged to verify domain authenticity through official channels before engaging with any related content.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 4 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif