# kra33at.cc — MALICIOUS > kra33at.cc hosts a fake wallet-login phishing page. VirusTotal shows 8 out of 95 scanners detected it. Check the full report. ## Summary PhishDestroy identifies kra33at.cc as an active fake wallet-login phishing page designed to steal cryptocurrency credentials. When a user attempts to connect a wallet, the site captures private keys or seed phrases instead of completing a genuine login. Security vendors such as MetaMask have already blocked access to this domain, and it appears on two additional blocklists, confirming its malicious nature. This domain was flagged by 8 of 95 VirusTotal scanners, registered on January 2, 2025, and resolves to IP 188.114.97.3 through NICENIC INTERNATIONAL GROUP CO., LIMITED. It also holds a Google Trust Services SSL certificate, which attackers often use to appear legitimate. The combination of recent creation, low detection rate at first, and hosting on a suspicious IP increases the risk of exposure. If you visited kra33at.cc, disconnect your wallet immediately and revoke any permissions it may have granted. Clear browser cache and cookies, then run a malware scan using a trusted antivirus tool. Report the domain to your wallet provider and consider transferring funds to a new wallet if you entered any credentials. Always verify site URLs and use hardware wallet confirmations for high-value transactions. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2025-01-02 22:50:24 - Registrar: NICENIC INTERNATIONAL GROUP CO., LIMITED - IP: 188.114.97.3 ## Detection Status - VirusTotal: 8 vendors flagged - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["MetaMask", "OISD"] ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/c2fc477f-388a-465a-a847-5c7651723099 - PhishDestroy: https://phishdestroy.io/domain/kra33at.cc/ - LLM endpoint: https://phishdestroy.io/domain/kra33at.cc/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/kra33at.cc/ Last updated: 2026-03-26