admin[.]kraken[.]com[.]sc
admin.kraken.com.sc 网络钓鱼与安全检查
“Admin Panel - Login”
admin.kraken.com.sc — 内容不可用 (HTTP 502). 品牌冒充:Kraken; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 5/91 (ADMINUSLabs, Fortinet, G-Data, Google Safebrowsing, Sophos); Google Safe Browsing flagged; Spamhaus DBL_PHISH; PhishDestroy score 80/100. 注册商: Ultahost.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Evidence Analysis
PhishDestroy identifies the domain admin.kraken.com.sc as an active brand impersonation threat targeting Kraken users. This domain closely mimics Kraken’s legitimate admin subdomain (admin.kraken.com) to deceive users into entering credentials or installing malicious software. While no specific drainer kit has been verified, the domain’s structure suggests a credential theft campaign designed to harvest login details for cryptocurrency exchange accounts. The low detection rate on VirusTotal (5/95) and use of a Let’s Encrypt SSL certificate indicate this threat is evolving and may evade initial detection by traditional security tools. This domain was flagged by Google Safe Bracing as a social engineering site and resolves to IP address 172.86.107.2. Registered through Ultahost, Inc. on April 24, 2026, it has not yet been widely blacklisted, maintaining a clean blocklist count. These technical indicators, combined with the recent domain creation and lack of detections, suggest a targeted, short-lived campaign designed to exploit user trust in the Kraken brand. The domain remains active with a current status of 'under investigation.' Users are advised to avoid interacting with this domain and its associated IP. Kraken has not confirmed this as a legitimate subdomain. Immediate action includes blocking the domain and IP at the network level, updating endpoint protection with latest signatures, and educating users about verifying domain authenticity. While risk is evolving due to low detection rates, the combination of recent creation, social engineering flags, and brand impersonation tactics elevates the threat level to critical for cryptocurrency users.
数据覆盖范围12 recorded checks
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of admin.kraken.com.sc · checked May 2, 2026
证据与外部报告Independent lookups and source reports
PD-20260501-70ECFF Recipient: u-abue@ultahost.com Victim safety and official reportingImmediate actions and verified reporting channels
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。