kraken12m[.]at
kraken12m.at — Non vérifié. Usurpation de l'identité de la marque : Kraken; Type d'arnaque : Fake Exchange. Résumé des preuves: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 81/100.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
kraken12m.at was registered on March 28 2026 and actively served HTTP responses that returned a 403 status code before being taken offline. The domain is explicitly linked to a fake Kraken exchange operation, as indicated by the intelligence tag “Impersonates: Kraken” and the scam classification “Fake Exchange”. PhishDestroy has already added the site to its blocklist and the domain currently appears on one public security blocklist. A VirusTotal scan involving 94 anti‑malware engines returned no detections, which does not imply the domain is benign but reflects the current lack of payload signatures.
No public Safe Browsing, OTX, or registrar records were supplied, and no IP address, hosting provider, SSL certificate, or page title information is available for further correlation. The limited observable footprint consists of the creation date, HTTP 403 response, blocklist inclusion, and the vendor‑level scan result. Because the site is offline, immediate threat execution is halted, yet the registration pattern suggests a possible template for future impersonation campaigns targeting cryptocurrency exchange users.
Defensive teams should pre‑emptively block kraken12m.at at network perimeters, add it to email and web filtering rules, and monitor for new domains that share the “kraken” keyword or similar registration timestamps. Continuous threat‑intel feeds should be consulted for any re‑appearance of the domain or related indicators, and any observed attempts to resolve the domain should be logged for incident response. Until further infrastructure details emerge, the domain remains a high‑confidence impersonation indicator requiring active mitigation.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Analyse de la configuration du site
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif