kradispute[.]cc
“Диспут на Кракен - как открыть, закрыть и выиграть”
证据摘要
Analysis of kradispute.cc, first observed on February 23, 2026, indicates that the domain is being used for a cryptocurrency‑related scam that impersonates the Kraken exchange. The site’s HTML title, “Диспут на Кракен – как открыть, закрыть и выиграть”, directly references Kraken dispute processes, suggesting an attempt to lure Russian‑speaking users into fraudulent actions. The domain resolves to the IP address 188.114.96.3, which belongs to Cloudflare, Inc. (AS13335) and is geolocated in the United States. Hosting on Cloudflare provides anonymity and rapid deployment, a pattern common to malicious infrastructure.
No TLS certificate was observed, meaning the site operated without HTTPS, which is atypical for legitimate financial services and further lowers trust. Registration information shows the domain was created on 23 February 2026 via NiceNIC International Group Co., Limited, a registrar known to host both legitimate and abusive domains. The domain appears on three independent security blocklists and has been explicitly blocked by PhishDestroy, MetaMask, and SEAL, confirming that multiple threat‑intelligence feeds have identified it as malicious. Google Safe Browsing classifies the site as “social engineering”, reinforcing the phishing nature of the content.
VirusTotal scans returned 12 detections out of 93 antivirus engines, indicating a moderate level of consensus among security products that the domain is malicious. The primary threat actor appears to be targeting users of the Kraken platform, likely attempting to harvest login credentials or persuade victims to transfer cryptocurrency under the guise of dispute resolution. While the page content has not been publicly captured, the combination of the Russian‑language title, the impersonation of Kraken, and the classification as a crypto scam provide a clear indication of intent.
已提交证据快照
- 已发送
- 台账记录
- 1
- 案件 ID
PD-20260223-30124E- 已捕获页面标题
- Диспут на Кракен - как открыть, закрыть и выиграть
- PDF 文件
- PDF 证据
完整证据文本
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | worker-kv.cloudkra1.workers.dev |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
域名状态
可访问 → 无法访问
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控