MALICIOUS — CRITICAL
krespace[.]com
This domain, krespace.com, has been flagged as part of an active credential theft campaign.
- VirusTotal
- 5/91
- Blocklists
- No stored match
- التوفر
- المحتوى غير متوفر · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
krespace.com — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Genericcrypto; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 5/91 (ADMINUSLabs, alphaMountain.ai, G-Data, Seclookup, Sophos); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 74/100. مسجّل النطاق: Dominet (HK).
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain, krespace.com, has been flagged as part of an active credential theft campaign. The site mimics legitimate services to trick users into submitting login details, which attackers harvest for unauthorized access. Threat actors often exploit freshly registered domains like this one to evade detection before security tools catch up. Avoid interacting with this domain entirely. PhishDestroy identifies krespace.com as a high-risk phishing host based on multiple indicators. The domain was created on October 13, 2025, through Dominet (HK) Limited, and currently resolves to IP address 188.114.96.3. Security scanners have not yet flagged this domain, with VirusTotal reporting 0 detections out of 95 engines. Despite using a Google Trust Services SSL certificate, the domain’s recent creation and lack of detection make it a prime candidate for phishing operations aimed at harvesting credentials. If you’ve visited krespace.com or entered any information, immediately change passwords for the affected accounts and enable multi-factor authentication where possible. Scan your device for malware using updated antivirus software, and monitor accounts for unusual activity. Report the domain to your IT team or security provider to block further access. Avoid revisiting the site entirely to prevent potential drive-by downloads or further credential theft.
نطاق تغطية البيانات13 recorded checks
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | krespace.com |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 3 identified
Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of krespace.com · checked Apr 29, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260428-C95121 Recipient: domainabuse@service.aliyun.com Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.