kiurakenlgin[.]webflow[.]io
“Kraken: Log in | Platform Official Site | Buy & SeII”
kiurakenlgin.webflow.io — Контент недоступний. Уособлення бренду: Kraken; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 16/95 (ChainPatrol, BitDefender, CRDF, CyRadar, Emsisoft); URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 95/100. Реєстратор: MarkMonitor.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, kiurakenlgin.webflow.io, was identified as a high‑risk brand‑impersonation page targeting Kraken users. The site presented the page title “Kraken: Log in | Platform Official Site | Buy & SeII”, indicating an attempt to lure victims into a crypto‑related credential harvest. Technical investigation shows the domain resolves to 104.18.36.248, an IP owned by Cloudflare (AS13335) located in the United States, and the hosting infrastructure uses Cloudflare services with HTTP/3 enabled. The SSL certificate is issued by Google Trust Services under the WE1 identifier, confirming a valid HTTPS connection despite the malicious intent.
Nameserver records point to journey.ns.cloudflare.com and lamar.ns.cloudflare.com, both Cloudflare‑controlled. Registration data reveals the domain was created on May 08 2013 and is registered through MarkMonitor, Inc., a registrar commonly associated with legitimate brand protection services. The HTTP response returned a 404 status code, and current monitoring indicates the site has been taken offline. Threat intelligence sources have flagged the domain: PhishDestroy lists it on its blocklist, Google Safe Browsing categorises it as social engineering, and VirusTotal reports 16 detections out of 95 scanning engines.
The domain appears on one additional security blocklist. Given the combination of brand impersonation, a crypto‑scam page title, and multiple vendor detections, defenders should continue to block the domain at perimeter and DNS layers, update indicator‑of‑compromise (IOC) feeds, and monitor for any re‑hosting attempts that may reuse the same subdomain pattern. Ongoing observation of Cloudflare‑associated IP ranges for similar phishing constructs is recommended, as is verification of any future requests to the “kiurakenlgin.webflow.io” namespace against threat intelligence feeds.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога