kra17[.]de
“Nur einen Moment…”
Résumé des preuves
This domain is flagged as an active credential theft operation with elevated risk. Analysis indicates kra17.de is designed to harvest login credentials through deceptive authentication prompts, likely targeting German-speaking users based on page content and infrastructure patterns. The threat type is specifically credential theft, not generic phishing or brand impersonation, as evidenced by the page title 'Nur einen Moment...' which mimics common authentication redirects used in stolen credential collection schemes. Infrastructure analysis reveals the domain resolves to IP address 188.114.96.3 and is detected by 5 out of 95 security vendors on VirusTotal. The domain appears in 3 AlienVault OTX threat intelligence pulses, suggesting association with broader malicious campaigns. It is currently blocked by at least one security blocklist and appears on one additional security blocklist. The page title 'Nur einen Moment...' is a known indicator of credential harvesting pages that simulate loading screens to trick users into entering sensitive information. Organizations and users should implement immediate mitigation measures against credential theft threats. Network-level blocking of kra17.de and its resolving IP 188.114.96.3 is recommended. Security teams should monitor for authentication attempts originating from this domain and conduct password resets for any credentials potentially exposed. Endpoint protection should be configured to detect and prevent access to known credential theft infrastructure. User education should emphasize recognizing authentication-themed social engineering attempts, particularly those using German language elements or simulated loading screens.
Data Coverage
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
VirusTotal
3 → 5
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif