MALICIOUS — HIGH
Проверка домена apps.krakenapp.gr.com на фишинг и безопасность
apps[.]
Analysis as of July 26 2026 indicates that the domain apps.krakenapp.gr.com is actively serving a generic phishing payload.
- VirusTotal
- 3/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступность
- Контент недоступен · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
apps.krakenapp.gr.com — Контент недоступен (HTTP 502). Олицетворение бренда: Kraken; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 3/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft); URLQuery 1 alert; Spamhaus DBL_ABUSED_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
Analysis as of July 26 2026 indicates that the domain apps.krakenapp.gr.com is actively serving a generic phishing payload. The host resolves to the IPv4 address 31.76.240.218. No authoritative nameserver information was returned (NS_NOT_FOUND), which hampers further DNS‑based attribution. VirusTotal reports that 2 of 91 scanned security vendors flagged the domain as malicious, providing an early indication of compromise.
The domain currently appears on three external blocklists and is explicitly blocked by the PhishDestroy, MetaMask, and SEAL filtering platforms, confirming its classification as high‑risk. The HTTP response includes a page title of “Problem loading page”, suggesting that the malicious content may be unavailable or that the site is deliberately presenting an error page to evade casual inspection. The threat is listed as generic phishing with a high risk rating, and the operational status is marked as active. Defenders should add apps.krakenapp.gr.com to URL filtering rules and ensure that the associated IP address 31.76.240.218 is denied at network perimeter devices.
Continuous monitoring of the IP reputation and periodic re‑query of public threat feeds are recommended, as the lack of nameserver data may indicate dynamic hosting. Updating endpoint protection signatures to reflect the two vendor detections will improve detection coverage. Because the domain is already listed on multiple blocklists, correlation with internal logs can help identify any successful exploitation attempts. Organizations should treat any traffic to this domain as malicious and quarantine related artifacts for forensic analysis.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных12 recorded checks
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | apps.krakenapp.gr.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 1 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчетыIndependent lookups and source reports
PD-20260726-1CEAE2 Recipient: abuse@intezio.net Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.