kra46-cc[.]filippok-langepas[.]ru
“kra46 - CC инновации в управлении проектами”
kra46-cc.filippok-langepas.ru — सामग्री अनुपलब्ध. साक्ष्य सारांश: VirusTotal 14/95 (alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET); Google Safe Browsing flagged; PhishDestroy score 92/100. रजिस्ट्रार: REGRU-RU.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of kra46-cc.filippok-langepas.ru shows a high‑risk credential harvesting infrastructure that was taken offline prior to the report date of July 24, 2026. The domain resolves to the public IPv4 address 193.105.134.30, which is registered to AS42237 (w1n ltd) in Sweden. Registration data indicates the domain was created on December 10, 2024 through the Russian registrar REGRU-RU. No TLS certificate is presented, meaning the site served only over HTTP, a common trait of low‑cost phishing deployments.
The page title returned by the host is "kra46 - CC инновации в управлении проектами," providing no direct indication of the targeted brand or service. Trust scoring from Gridinsoft assigns a zero out of one hundred, reflecting an extremely low reputation. The domain appears on a single security blocklist and is actively blocked by the PhishDestroy service. Google Safe Browsing classifies the URL as social engineering, and VirusTotal records 14 detections out of 95 scanned scanners, confirming malicious intent.
Nameserver delegation points to ns1.armadns.icu and ns2.armadns.icu, both of which are frequently associated with disposable or fast‑flux hosting. Current DNS queries show the domain as offline, suggesting the operators have withdrawn the site or are rotating infrastructure. Defenders should continue to block the domain at perimeter and DNS layers, monitor the associated IP 193.105.134.30 for any resurgence, and add the nameservers to watchlists for future abuse. Because the site lacks SSL and the page content is not publicly available, further forensic capture is not possible, and the primary mitigation remains proactive blocking and threat‑intel sharing.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।