krakn46at[.]cc
“krakn46at.cc”
krakn46at.cc — 隐形 · 可达. 品牌冒充:["kraken"]; 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 11/94 (alphaMountain.ai); URLQuery 2 alerts; cloaking observed; PhishDestroy score 92/100. 注册商: NiceNIC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies krakn46at.cc as a cryptocurrency drainer domain impersonating wallet services to siphon funds. This domain leverages deceptive tactics to trick users into connecting their wallets and authorizing malicious transactions. The drainer kit is designed to exploit wallet approval prompts, leading to unauthorized asset transfers under the guise of legitimate transactions.
This domain was flagged with a VirusTotal detection score of 1/95 security vendors, indicating limited but confirmed malicious activity. It was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED and resolves to the IP address 185.226.92.168. The domain was created on November 19, 2025, and currently holds a Let's Encrypt SSL certificate. It appears on 1 security blocklist and is blocked by MetaMask, highlighting its malicious nature. The domain's recent creation and low detection rate suggest it may be part of a rapidly evolving campaign targeting cryptocurrency users.
As of the latest assessment, krakn46at.cc remains active with an elevated risk level. Immediate actions include blocking the domain and IP address to prevent further access. Users are advised to avoid interacting with this domain and verify any suspicious links using PhishDestroy's threat intelligence tools. While current countermeasures are effective, the domain's low detection rate and recent emergence pose a lingering risk to unwary users. Regular monitoring and updates to security tools are recommended to mitigate potential threats.
安全信号
网络安全情报 Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | krakn46at.cc |
malicious | Sinkholed |
| DNS4EU | krakn46at.cc |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
Latest Classified Outcome 2026-08-14 03:12:13 UTC
所用技术 · 2 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
VirusTotal 分析
证据与外部报告
PD-20260330-06725A Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。