kraken3yvbvzmhytnrnuhsy772i6dfobofu652e27f5hx6y5cpj7rgyd-onion[.]org
kraken3yvbvzmhytnrnuhsy772i6dfobofu652e27f5hx6y5cpj7rgyd-onion.org — Não verificado. Representação da marca: Kraken; Tipo de golpe: Fake Exchange. Resumo das evidências: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 76/100. Registrador: Gname 398.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain kraken3yvbvzmhytnrnuhsy772i6dfobofu652e27f5hx6y5cpj7rgyd-onion.org is a fake exchange site that mimics Kraken, a well-known cryptocurrency exchange. It is currently taken down, but at its peak, it was flagged by 1 out of 94 vendors on VirusTotal, indicating limited detection. The domain was registered through Gname 398 Inc and hosted on an IP managed by CloudFlare, Inc., located in Canada.
This phishing domain aimed to deceive users into believing they were accessing the legitimate Kraken platform. By leveraging the trusted Let's Encrypt SSL certificate, the site likely appeared secure to unsuspecting visitors. The use of a complex and seemingly random domain name is a common tactic to evade detection and confuse users.
Despite its takedown, the domain highlights the ongoing threat of fake exchange sites within the cryptocurrency sector. PhishDestroy's inclusion of this domain in public blocklists underscores the importance of early detection in mitigating phishing threats. The limited VirusTotal detection count reflects the freshness of the threat, as phishing domains often exploit the gap between registration and antivirus database updates.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Análise da configuração do site
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo