kra47-------------------cc[.]ru
“kra47 - источник AT идей для креативного бизнеса”
ملخص الأدلة
This domain is flagged as a credential harvesting phishing site, classified under elevated risk due to confirmed malicious activity targeting business and creative sector users. The page title, 'kra47 - источник AT идей для креативного бизнеса,' suggests an attempt to lure victims with promises of business resources, a common tactic in credential theft operations. Analysis indicates the domain kra47-------------------cc.ru was registered on December 05, 2025, through REGRU-RU, a registrar frequently associated with high-risk domains. It resolved to IP address 91.236.116.20, hosted under AS42237 (w1n ltd) in Sweden, an autonomous system with a history of hosting phishing infrastructure. VirusTotal detections reached 10 out of 95 security vendors, confirming malicious classification. The domain currently appears on one security blocklist and was previously blocked by PhishDestroy. No SSL certificate was present, increasing the likelihood of plaintext credential transmission. Mitigation requires immediate action from network defenders and end-users. Organizations should block the domain and its associated IP (91.236.116.20) at the perimeter firewall and DNS filtering layers. Security teams are advised to search logs for connections to kra47-------------------cc.ru or 91.236.116.20 occurring between December 2025 and the takedown date. Users who accessed the site should reset credentials for any accounts entered, particularly those related to business or financial services. Given the domain's offline status, monitoring for re-registration or similar domains using the 'kra47' prefix is recommended. Network defenders should also review AS42237 for additional malicious indicators, as hosting providers with known phishing activity often harbor multiple threats.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب