krakenrpc[.]pages[.]dev
“MainNet Project”
Сводка доказательств
Analysis identifies krakenrpc.pages.dev as an active brand impersonation domain targeting the Kraken cryptocurrency platform. The observed content uses the page title "MainNet Project" while presenting infrastructure characteristics consistent with credential harvesting or fraudulent onboarding workflows associated with cryptocurrency-themed phishing campaigns. Current telemetry indicates that the domain remains active and accessible at the time of assessment, supporting a high-risk classification due to the combination of brand abuse indicators and ongoing availability. The use of recognizable branding elements combined with generic project terminology increases the probability of user deception and unauthorized account access attempts.
Infrastructure analysis reveals that the domain resolves to IP address 188.114.96.3 and is hosted within AS13335 operated by Cloudflare, Inc. Registration records indicate that the domain was created on December 04, 2025 and was registered through Cloudflare, Inc. Reputation analysis shows that the domain currently appears on 1 security blocklist and has been specifically blocked by PhishDestroy. Detection telemetry indicates that 15 of 95 security vendors on VirusTotal classify the domain as malicious or phishing-related infrastructure. Additional threat intelligence confirms that Google Safe Browsing flags the domain for phishing activity. The site currently presents an SSL certificate issued by Google Trust Services using the WE1 issuing hierarchy, demonstrating that transport encryption is present despite the malicious assessment and should not be interpreted as evidence of legitimacy.
The domain remains active and should be treated as hostile infrastructure until independent verification demonstrates otherwise. Security teams should implement immediate blocking at network, DNS, proxy, and email security layers where applicable. Any credentials, wallet information, recovery phrases, authentication tokens, or account details entered through this infrastructure should be considered potentially compromised and subject to incident response procedures. Users encountering references to this domain should avoid interaction, preserve relevant artifacts for investigation, and verify access paths through trusted official channels rather than links delivered through messages, advertisements, or unsolicited communications. Continued monitoring is recommended due to the possibility of rapid content changes or infrastructure migration associated with phishing operations.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
15 → 14
-
Статус домена
Доступен → Недоступен
Криминалистическая аналитика
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of krakenrpc.pages.dev · checked Mar 6, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание