lubyatinka[.]ru
“Kraken krab2 - традиционный любятинка с надёжными AT принципами”
lubyatinka.ru — Contenu indisponible. Usurpation de l'identité de la marque : Kraken; Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 2/93 (Bfore.Ai PreCrime, SOCRadar); PhishDestroy score 56/100. Bureau d’enregistrement: REGRU-RU.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain lubyatinka.ru is a phishing site engaged in brand impersonation targeting Kraken, a cryptocurrency exchange. It posed an elevated risk as a cryptocurrency scam designed to deceive users into disclosing login credentials or transferring funds under false pretenses. As of the latest verification, lubyatinka.ru has been taken offline, though prior activity classified it as an active threat.
Technical indicators confirm lubyatinka.ru as a malicious domain. It was flagged by 2 of 95 security vendors on VirusTotal, including Bfore.Ai PreCrime and SOCRadar. The domain appeared on 1 security blocklist, specifically PhishDestroy. Registered through REGRU-RU on July 28, 2025, lubyatinka.ru resolved to the IP address 186.2.175.37, hosted under AS59692 IQWeb FZ-LLC in Belize. No SSL certificate was present, and the observed page title read 'Kraken krab2 - традиционный любятинка с надёжными AT принципами'. Nameservers were linked to Cloudflare, though no drainer kit was identified.
Users who interacted with lubyatinka.ru should immediately change their Kraken account passwords and enable two-factor authentication to prevent unauthorized access. Monitor account activity for signs of fraud, such as unauthorized transactions or login attempts. If cryptocurrency was transferred, consider moving remaining funds to a new wallet and revoking any token approvals granted during the suspected compromise. Report the domain to Kraken’s security team and file complaints with platforms like Google Safe Browsing, PhishTank, or local cybercrime authorities to aid in takedown efforts.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
PD-20260105-73BC3A Recipient: abuse@iqweb.io Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif