krakenlogin-cc[.]pages[.]dev
“Suspected phishing site | Cloudflare”
证据摘要
Analysis indicates that the domain krakenlogin-cc.pages.dev was registered through Cloudflare on 21 February 2026 and is currently taken offline. The site resolves to the Cloudflare edge address 188.114.96.3, located in the United States and announced by AS13335. The TLS certificate presented is issued by Google Trust Services under the WE1 label, consistent with Cloudflare‑provided HTTPS. DNS resolution uses the Cloudflare‑owned authoritative nameservers and the HTTP response returns a 403 status code, suggesting that the content is intentionally blocked or inaccessible. The page title returned from the HTTP request reads “Suspected phishing site | Cloudflare”, and the brand target is identified as Kraken.
The scam type is classified as a crypto‑related scam. VirusTotal scans show that two of ninety‑three security vendors flagged the domain, and the domain appears on three public blocklists. Additional blocking is observed from PhishDestroy, MetaMask, and SEAL. A Gridinsoft trust score of zero out of one hundred further reflects a lack of legitimacy. Detected technologies include HSTS, Cloudflare CDN, and HTTP/3 support.
Evidence confirms that the domain is being used to impersonate Kraken for cryptocurrency‑related fraud, but the exact payload or credential‑stealing page has not been captured. Because the site is offline, active mitigation is limited to pre‑emptive blocking. Defenders should add the domain and its associated IP address to firewall deny lists, update DNS‑based threat feeds, and monitor for any resurgence under the same nameserver configuration. Continuous observation of Cloudflare‑issued certificates for new subdomains that contain “krakenlogin” is advised, as threat actors often reuse similar naming patterns. Organizations that interact with Kraken services should educate users about unsolicited login prompts and enforce multi‑factor authentication to reduce the impact of potential credential harvesting.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
检测时间线
-
域名状态
可访问 → 无法访问
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
技术
识别出 3 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of krakenlogin-cc.pages.dev · checked Apr 12, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控