kra47-cc[.]geodisk[.]ru
“krab1 - AT-платформа для изучения космоса”
kra47-cc.geodisk.ru — Contenu indisponible. Résumé des preuves: VirusTotal 10/95 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Fortinet); Google Safe Browsing flagged; PhishDestroy score 80/100. Bureau d’enregistrement: REGRU-RU.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, kra47-cc.geodisk.ru, has been identified as a high-risk generic phishing threat, specifically a crypto drainer designed to steal cryptocurrency wallets or credentials. Its page title claims to be an 'AT-платформа для изучения космоса' (AT-platform for space exploration), which is a deceptive lure to trick users into connecting their wallets or entering private keys. The domain is currently offline, but users should be aware of the malicious intent behind it.
PhishDestroy's analysis reveals multiple red flags: VirusTotal shows 10 out of 95 security vendors flagging this domain as malicious. The domain was registered on March 2, 2025, through REGRU-RU, and resolves to IP address 193.105.134.30. It appears on at least one security blocklist, and Google Safe Browsing flags it for phishing. No SSL certificate is present, further indicating a lack of legitimate security measures. The unique seed 5604c1 was used to generate this report, ensuring distinct phrasing.
To protect against this crypto drainer, users should never connect their cryptocurrency wallets or enter sensitive information on such sites. Always verify the legitimacy of any platform claiming to offer space-related services or investments. If you have interacted with this domain, immediately transfer funds from affected wallets to new, secure ones, and enable two-factor authentication. Use PhishDestroy's tools to check other domains before engaging with them, and report any suspicious sites to authorities. Stay vigilant against phishing attempts that promise unusual opportunities in emerging fields like space exploration.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif