kra01-onion[.]vip
PhishDestroy identifies kra01-onion.vip as a domain with an elevated risk level due to its involvement in generic phishing threats. This domain was flagged as it attempts to deceive users into revealing sensitive information.
The domain kra01-onion.vip has been taken offline, but its history reveals some concerning details: it was registered through Gname 002 Inc, resolves to the IP address 188.114.96.3, and has an SSL certificate issued by Google Trust Services / WE1. Furthermore, it appeared on 1 security blocklist and was found in 1 AlienVault OTX threat intelligence pulse. VirusTotal reported that 1 out of 95 security vendors flagged this domain, indicating a potential threat. The domain was created on March 29, 2026, which is a relatively recent registration.
To mitigate the threat posed by kra01-onion.vip, users should be cautious when clicking on links or providing sensitive information online. Since this domain is involved in generic phishing, it is essential to verify the authenticity of websites and emails before interacting with them. Users should also keep their antivirus software up to date and use a reputable security suite to detect and block potential threats. By being vigilant and taking necessary precautions, users can protect themselves from the risks associated with kra01-onion.vip and other similar domains.
Threat Response Pipeline
Public Blocklist Status
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive