kraken-ssylka-darknet[.]com
“Captcha”
kraken-ssylka-darknet.com — Непроверенный. Олицетворение бренда: Kraken; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 10/94 (SOCRadar); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 80/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, kraken-ssylka-darknet.com, poses a high-risk threat as a brand impersonation phishing site targeting Kraken, a major cryptocurrency exchange. Analysis indicates the infrastructure is designed to deceive users into believing they are interacting with legitimate Kraken services, likely for credential theft or unauthorized fund transfers. The page title 'Captcha' suggests an attempt to mimic authentication workflows, a common tactic to harvest login credentials or deploy malicious payloads under the guise of security verification. Infrastructure analysis reveals the domain was registered on March 05, 2026, through NiceNIC International Group Co., Limited, a registrar frequently associated with malicious domains. It currently resolves to IP address 104.21.45.66, hosted on AS13335 (Cloudflare, Inc.), which is often leveraged to obscure the true origin of phishing infrastructure. The domain appears on three security blocklists and is flagged by 10 out of 95 security vendors on VirusTotal, indicating broad detection across the threat intelligence community. Notably, the domain lacks an SSL certificate, a red flag for users accustomed to secure connections on legitimate platforms. Users who visited kraken-ssylka-darknet.com should assume potential exposure of login credentials or sensitive account details. Immediate actions include revoking any active sessions on the legitimate Kraken platform, enabling multi-factor authentication if not already active, and monitoring accounts for unauthorized transactions. If credentials were entered, a password reset should be performed on all platforms where the same credentials may have been reused. Additionally, affected users should review connected wallet authorizations and revoke any suspicious permissions to mitigate the risk of unauthorized fund transfers or crypto drainer attacks. System scans for malware are recommended, particularly if any downloads were initiated from the domain.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-19 03:08:03 UTC
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260305-6FF30A Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание