krakenrpc[.]pages[.]dev
“MainNet Project”
Зведення доказів
Analysis identifies krakenrpc.pages.dev as an active brand impersonation domain targeting the Kraken cryptocurrency platform. The observed content uses the page title "MainNet Project" while presenting infrastructure characteristics consistent with credential harvesting or fraudulent onboarding workflows associated with cryptocurrency-themed phishing campaigns. Current telemetry indicates that the domain remains active and accessible at the time of assessment, supporting a high-risk classification due to the combination of brand abuse indicators and ongoing availability. The use of recognizable branding elements combined with generic project terminology increases the probability of user deception and unauthorized account access attempts.
Infrastructure analysis reveals that the domain resolves to IP address 188.114.96.3 and is hosted within AS13335 operated by Cloudflare, Inc. Registration records indicate that the domain was created on December 04, 2025 and was registered through Cloudflare, Inc. Reputation analysis shows that the domain currently appears on 1 security blocklist and has been specifically blocked by PhishDestroy. Detection telemetry indicates that 15 of 95 security vendors on VirusTotal classify the domain as malicious or phishing-related infrastructure. Additional threat intelligence confirms that Google Safe Browsing flags the domain for phishing activity. The site currently presents an SSL certificate issued by Google Trust Services using the WE1 issuing hierarchy, demonstrating that transport encryption is present despite the malicious assessment and should not be interpreted as evidence of legitimacy.
The domain remains active and should be treated as hostile infrastructure until independent verification demonstrates otherwise. Security teams should implement immediate blocking at network, DNS, proxy, and email security layers where applicable. Any credentials, wallet information, recovery phrases, authentication tokens, or account details entered through this infrastructure should be considered potentially compromised and subject to incident response procedures. Users encountering references to this domain should avoid interaction, preserve relevant artifacts for investigation, and verify access paths through trusted official channels rather than links delivered through messages, advertisements, or unsolicited communications. Continued monitoring is recommended due to the possibility of rapid content changes or infrastructure migration associated with phishing operations.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
Хронологія виявлення
-
VirusTotal
15 → 14
-
Статус домену
Доступний → Недоступний
Криміналістичні дані
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of krakenrpc.pages.dev · checked Mar 6, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога