MALICIOUS — CRITICAL
krab15cc[.]cc
This domain is classified as an elevated-risk credential phishing site targeting user authentication data.
- VirusTotal
- 10/91
- Blocklists
- No stored match
- التوفر
- آخر نشاط معروف · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
krab15cc.cc — آخر نشاط معروف (HTTP 200). نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 10/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, Forcepoint ThreatSeeker); Spamhaus DBL_PHISH; PhishDestroy score 90/100. مسجّل النطاق: NiceNIC.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain is classified as an elevated-risk credential phishing site targeting user authentication data. Analysis indicates the infrastructure is designed to harvest login credentials through deceptive interfaces mimicking legitimate services, a common tactic in credential theft campaigns. Infrastructure analysis reveals the domain krab15cc.cc was registered on March 28, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-risk domains. The site resolves to IP address 172.67.143.135 and employs Cloudflare services, including Browser Insights and HTTP/3, to obscure backend infrastructure. Security telemetry shows 11 out of 95 detection engines flag the domain as malicious, while Gridinsoft assigns a trust score of 0/100. The domain appears on one security blocklist and is currently offline, though prior activity was intercepted by automated phishing detection systems. The SSL certificate is issued by Google Trust Services, providing a superficial layer of legitimacy. Mitigation requires immediate action from both end users and network administrators. Users who may have interacted with krab15cc.cc should invalidate any credentials entered on the site and enable multi-factor authentication on associated accounts. Network-level protections should include DNS filtering to block resolution of the domain and its associated IP. Security teams are advised to monitor for indicators of compromise, including the domain, IP, and any subdomains, while reviewing logs for connections to 172.67.143.135. Given the domain's recent creation and low detection count, continuous monitoring for related infrastructure is recommended, as threat actors often rotate domains following initial takedowns.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات Registrar context
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
Latest Classified Outcome 2026-08-09 02:44:15 UTC
التقنيات · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of krab15cc.cc · checked Jun 26, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260328-D7ADD5 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.