kraqikienlogiuen[.]webflow[.]io
“Kraken ℒogin® | Log in to My Account (Official Website)”
kraqikienlogiuen.webflow.io — Conteúdo indisponível. Representação da marca: Kraken; Tipo de golpe: Crypto Scam. Resumo das evidências: VirusTotal 16/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao); Google Safe Browsing flagged; PhishDestroy score 95/100. Registrador: MarkMonitor.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain kraqikienlogiuen.webflow.io is assessed at a high risk level due to its specific threat type of brand impersonation. The domain impersonates Kraken, a well-known cryptocurrency exchange, and is designed to deceive users into providing sensitive information.
Analysis indicates that kraqikienlogiuen.webflow.io has been flagged by 16 out of 95 security vendors on VirusTotal, suggesting a significant level of suspicion among the security community. The domain is registered through MarkMonitor, Inc., a company often used by legitimate brands to manage and protect their domain names. Infrastructure analysis reveals that the domain resolves to the IP address 2606:4700:440c::ac40:9708, which is located in the United States and is part of Cloudflare, Inc.'s network (AS13335). The domain was created on May 08, 2013, which is an unusually long time ago for a typical phishing domain. Additionally, the domain appears on one security blocklist and has been flagged by Google Safe Browsing for phishing activities. The SSL certificate is issued by Google Trust Services / WE1, which might initially lend a false sense of legitimacy to unsuspecting users. The page title, 'Kraken ℒogin® | Log in to My Account (Official Website)', is designed to closely mimic the official Kraken login page, further increasing the risk of user deception.
To mitigate the risk posed by this domain, users are advised to verify the URL of any Kraken login page they visit and ensure it matches the official domain. Security teams should implement DNS-based blocking to prevent access to this domain and monitor network traffic for any attempts to access it. Additionally, educating users about the signs of phishing, such as unusual URLs and misleading page titles, is crucial. Organizations should also consider deploying multi-factor authentication (MFA) to reduce the impact of credential theft. Regular security audits and monitoring of user activity can help detect and respond to any potential compromise resulting from this threat.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo