kra37att[.]at
“Кракен сменил клир домены, теперь актуальные krab3 at или krab3 cc”
kra37att.at — 未验证. 证据摘要: VirusTotal 9/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Forcepoint ThreatSeeker); URLQuery 100 det.; PhishDestroy score 95/100. 注册商: GoDaddy.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain kra37att.at presents as a Russian-language site promoting updated "clear domain" addresses for the Kraken marketplace, a known darknet market. The page title explicitly directs users to alternative domains krab3 at or krab3 cc, indicating the site functions as a redirect or advertisement for a phishing or malicious version of the Kraken brand. The primary threat is that users may be lured into providing credentials or financial data to a fraudulent Kraken site, leading to account compromise or financial loss.
Technical analysis shows the site was flagged by 7 out of 95 VirusTotal vendors, including alphaMountain.ai, CRDF, CyRadar, Fortinet, and Gridinsoft. It is listed on 1 blocklist. The domain is registered through GoDaddy.com, LLC and resolves to IP address 104.21.78.220, located in the United States, hosted by AS13335 Cloudflare, Inc. The SSL certificate is issued by Google Trust Services / WE1. Nameservers are dane.ns.cloudflare.com and meiling.ns.cloudflare.com.
The site is currently reported as DOWN/OFFLINE. GridinSoft trust rating is 0 out of 100, indicating high risk. Although offline now, the domain poses a significant threat due to its impersonation of the Kraken brand and potential for future reactivation. Users should avoid any interaction with this domain or its suggested alternatives. Risk level is high.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of kra37att.at · checked Mar 2, 2026
网站配置分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。