kra9[.]me
“KRAKEN”
Kanıt özeti
Analysis of the domain kra9.me, observed on July 24 2026, indicates a brand‑impersonation campaign targeting the cryptocurrency exchange Kraken. The domain was registered on 5 November 2025 through Virtualia LLC and is hosted on Cloudflare’s network (AS13335) with the IP address 104.21.85.29 located in the United States. DNS resolution points to the Cloudflare authoritative name servers aryanna.ns.cloudflare.com and lloyd.ns.cloudflare.com. No TLS certificate is presented, and the site does not serve HTTPS content. The HTTP response, when captured before the takedown, returned a page whose title is exactly “KRAKEN”, matching the targeted brand.
The site is classified as a crypto‑scam in the intelligence feed and is listed on a single security blocklist. PhishDestroy has taken the domain offline, and the current status is reported as offline. Reputation scoring from Gridinsoft assigns a trust score of 0 out of 100, indicating a malicious classification. VirusTotal analysis shows that 1 of 93 scanned vendors flagged the domain, confirming at least one detection. The limited detection count suggests that many scanners have not yet identified the payload, but the presence of a flagging engine underscores the malicious intent.
Uncertainty remains regarding the specific payload or phishing page content because the site is no longer reachable and no additional sandbox or URL‑capture data are available. Defenders should block the IP address 104.21.85.29 and the domain name kra9.me at the DNS level, add the domain to internal blocklists, and monitor for any future registrations that reuse the same registrar or name‑server pattern. Continuous telemetry from Cloudflare‑originated traffic and correlation with Kraken‑related credential‑theft alerts will help detect any residual activity. The evidence compiled here supports an elevated risk rating and justifies proactive containment.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
Adli İstihbarat
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin