gwbt39x[.]space
gwbt39x.space — Контент недоступний. Уособлення бренду: Kraken; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 2/93 (CRDF, Gridinsoft); PhishDestroy score 56/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
gwbt39x.space was registered on 21 February 2026. The domain is associated with a crypto‑scam campaign that claims to represent the Kraken cryptocurrency exchange, as indicated by the “Impersonates: kraken” tag. The site employed an SSL certificate identified as R11, which is typical of low‑quality or self‑signed certificates, and received a Gridinsoft trust score of 0 out of 100, confirming a lack of legitimate reputation. VirusTotal analysis recorded detections from 2 of 93 scanning engines, demonstrating that a minority of security products identified malicious behavior, while the remaining vendors reported no issues.
The domain is presently taken offline and has been listed by the PhishDestroy blocklist and at least one additional security blocklist, reinforcing its classification as hostile infrastructure. Publicly available intelligence does not include the hosting IP, autonomous system number, or country of registration, and no page title or content snapshot has been published. Consequently, the exact delivery mechanism, payload type, and any credential‑harvesting forms remain unknown. The limited detection coverage suggests that the campaign may rely on techniques that evade many scanners, or that the site was quickly seized before broader analysis could be performed.
Defenders should immediately add gwbt39x.space to URL filtering and DNS block policies, enforce strict outbound controls to prevent connections to newly registered domains with low trust scores, and monitor threat‑intel feeds for re‑registration attempts. Given the brand‑impersonation focus, organizations that use Kraken services should alert users to unsolicited communications referencing this domain and advise verification through official Kraken channels. Ongoing collection of hosting data and rapid sharing of any new indicators will improve detection of related infrastructure.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Криміналістичні дані
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога