kra-30[.]com
Phishing and security check for kra-30.com
Analysis indicates that the domain kra-30.com was registered on March 29 2026 through ChocolateChipDomains, LLC and is currently hosted on an AWS Global Accelerator endpoint (IP 76.223.54.146, United States). The domain uses a GoDaddy‑issued DV TLS certificate chained to GoDaddy TLS Intermediate CA DV – R1v1 and resolves via the default Afternic name servers ns1.afternic.com and ns2.afternic.com. An HTTP request returns status 200, confirming that a web service is active. Threat intelligence sources show that 12 of 94 VirusTotal scanners flagged the domain, Gridinsoft assigns a trust score of 0/100, and it appears on one public blocklist and has been added to the PhishDestroy blocklist. AlienVault OTX references the domain in a single pulse. The combination of recent registration, low trust scores, multiple detections, and active web service classifies the infrastructure as high‑risk generic phishing. Defenders should block the domain at perimeter and DNS layers, monitor outbound connections to the associated IP, and include the domain in threat‑intel feeds. Further investigation of the hosted content is required to determine the exact phishing lure.
Threat Response Pipeline
Public Blocklist Status
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Forensic Intelligence
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive