kra47-------------------cc[.]ru
“kra47 - источник AT идей для креативного бизнеса”
Resumen de las pruebas
This domain is flagged as a credential harvesting phishing site, classified under elevated risk due to confirmed malicious activity targeting business and creative sector users. The page title, 'kra47 - источник AT идей для креативного бизнеса,' suggests an attempt to lure victims with promises of business resources, a common tactic in credential theft operations. Analysis indicates the domain kra47-------------------cc.ru was registered on December 05, 2025, through REGRU-RU, a registrar frequently associated with high-risk domains. It resolved to IP address 91.236.116.20, hosted under AS42237 (w1n ltd) in Sweden, an autonomous system with a history of hosting phishing infrastructure. VirusTotal detections reached 10 out of 95 security vendors, confirming malicious classification. The domain currently appears on one security blocklist and was previously blocked by PhishDestroy. No SSL certificate was present, increasing the likelihood of plaintext credential transmission. Mitigation requires immediate action from network defenders and end-users. Organizations should block the domain and its associated IP (91.236.116.20) at the perimeter firewall and DNS filtering layers. Security teams are advised to search logs for connections to kra47-------------------cc.ru or 91.236.116.20 occurring between December 2025 and the takedown date. Users who accessed the site should reset credentials for any accounts entered, particularly those related to business or financial services. Given the domain's offline status, monitoring for re-registration or similar domains using the 'kra47' prefix is recommended. Network defenders should also review AS42237 for additional malicious indicators, as hosting providers with known phishing activity often harbor multiple threats.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.