krakienenlogi[.]godaddysites[.]com
“Kr𝖆ken Loℊin | Loℊ In”
krakienenlogi.godaddysites.com — Контент недоступний. Зведення доказів: VirusTotal 16/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CRDF); PhishDestroy score 95/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged as an elevated-risk credential phishing site targeting users of the Kraken cryptocurrency exchange. Analysis indicates the site impersonates the legitimate Kraken login interface, using visually similar page elements and a deceptive page title, 'Kr𝖆ken Loℊin | Loℊ In,' to trick victims into submitting sensitive account credentials. The threat type is classified as generic phishing with a focus on financial fraud and unauthorized account access. Infrastructure analysis reveals the domain krakienenlogi.godaddysites.com was registered through GoDaddy.com, LLC and resolves to the IP address 76.223.105.230, hosted on autonomous system AS16509 in the United States. The domain was created on November 18, 2013, though the phishing content appears to be a recent deployment on this long-standing infrastructure. It is currently offline but was previously detected by 16 out of 95 security engines on VirusTotal, indicating broad recognition as malicious. The site appears on two security blocklists, including PhishDestroy and PhishingDB, and uses an SSL certificate issued by GoDaddy.com, Inc. under the Go Daddy Secure Certificate Authority - G2. Mitigation steps for organizations and users include immediate blocking of the domain and its associated IP address at the network perimeter. Security teams should monitor for any attempts to access this domain or related indicators, particularly within environments where cryptocurrency platforms are used. End users should be educated on recognizing phishing attempts, including the use of homoglyphs in domain names and page titles. If credentials were entered on this site, affected accounts should be secured immediately through password resets and multi-factor authentication enforcement. Network logs should be reviewed for connections to 76.223.105.230 or any subdomains of godaddysites.com exhibiting similar phishing characteristics.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: godaddysites.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain godaddysites.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога