admin[.]kraken[.]com[.]sc
“Admin Panel - Login”
Resumo das evidências
PhishDestroy identifies the domain admin.kraken.com.sc as an active brand impersonation threat targeting Kraken users. This domain closely mimics Kraken’s legitimate admin subdomain (admin.kraken.com) to deceive users into entering credentials or installing malicious software. While no specific drainer kit has been verified, the domain’s structure suggests a credential theft campaign designed to harvest login details for cryptocurrency exchange accounts. The low detection rate on VirusTotal (5/95) and use of a Let’s Encrypt SSL certificate indicate this threat is evolving and may evade initial detection by traditional security tools. This domain was flagged by Google Safe Bracing as a social engineering site and resolves to IP address 172.86.107.2. Registered through Ultahost, Inc. on April 24, 2026, it has not yet been widely blacklisted, maintaining a clean blocklist count. These technical indicators, combined with the recent domain creation and lack of detections, suggest a targeted, short-lived campaign designed to exploit user trust in the Kraken brand. The domain remains active with a current status of 'under investigation.' Users are advised to avoid interacting with this domain and its associated IP. Kraken has not confirmed this as a legitimate subdomain. Immediate action includes blocking the domain and IP at the network level, updating endpoint protection with latest signatures, and educating users about verifying domain authenticity. While risk is evolving due to low detection rates, the combination of recent creation, social engineering flags, and brand impersonation tactics elevates the threat level to critical for cryptocurrency users.
Instantâneo das evidências enviadas
- Enviado
- Registros do livro-razão
- 1
- ID do caso
PD-20260501-70ECFF- Título da página capturada
- Admin Panel - Login
- Artefato PDF
- Evidência em PDF
Texto completo da evidência
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (GB):
Computer Misuse Act 1990
Fraud Act 2006
Communications Act 2003 - Section 127
UK law criminalizes unauthorized computer access, fraud, and malicious communications.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Tecnologias
3 tecnologias identificadas com alta confiança
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of admin.kraken.com.sc · checked May 2, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo