# kra47---cc--c.ru — SUSPICIOUS > kra47---cc--c.ru is a crypto drainer phishing site with 0/95 VirusTotal detections. Verify safety on PhishDestroy before interacting. ## Summary PhishDestroy identifies kra47---cc--c.ru as an active crypto drainer phishing site currently under investigation. The domain impersonates cryptocurrency platforms to steal digital assets via malicious scripts and fake login portals. Users are urged to avoid engagement until further analysis is complete. kra47---cc--c.ru was registered through REGRU-RU on February 07, 2026, and resolves to IP 172.67.170.115. Despite 0 detections from VirusTotal vendors (0/95), the domain holds an SSL certificate issued by Google Trust Services. This combination of low detection rates, recent creation, and high-reputation SSL issuance creates a deceptive trust signal that cybercriminals leverage to execute crypto drainer operations. The domain remains unblocked by major threat intelligence platforms, increasing exposure risk to unsuspecting users. The current status of kra47---cc--c.ru remains active with elevated risk potential due to its crypto drainer functionality and low detection footprint. Users should avoid clicking links or entering credentials on this domain. PhishDestroy recommends immediate domain blocking at the network level and updating endpoint protection rules to flag this URL. For verification, cross-reference the domain against PhishDestroy's real-time threat database using the unique seed identifier 308330. Exercise heightened caution with recently registered domains hosting financial impersonation content, as they frequently serve as fronts for crypto drainer campaigns. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-02-07 05:29:57 - Registrar: REGRU-RU - IP: 172.67.170.115 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/8fcb44d1-6aa6-4767-ab69-b67642e11ead - PhishDestroy: https://phishdestroy.io/domain/kra47---cc--c.ru/ - LLM endpoint: https://phishdestroy.io/domain/kra47---cc--c.ru/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/kra47---cc--c.ru/ Last updated: 2026-03-28