krab-5cc-5[.]ru
“Сеть обмена данными CC для распределённых вычислений krab5cc”
krab-5cc-5.ru — सामग्री अनुपलब्ध (HTTP 502). ब्रांड प्रतिरूपण: ["telegram"]; घोटाले का प्रकार: Generic Phishing. साक्ष्य सारांश: VirusTotal 2/94 (Gridinsoft, SOCRadar); PhishDestroy score 56/100. रजिस्ट्रार: REGRU-RU.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of krab-5cc-5.ru shows a recently registered domain created on March 07, 2026 through the REGRU-RU registrar. The domain resolves to IP address 205.185.113.136, which is assigned to AS53667 FranTech Solutions in the United States. The hosting server runs Nginx and presents a Let's Encrypt TLS certificate, indicating standard HTTPS support. The page title returned by the web server is "Сеть обмена данными CC для распределённых вычислений krab5cc," which translates to a data exchange network for distributed computing, suggesting the site attempts to present itself as a legitimate data‑sharing service.
VirusTotal records indicate that 2 of 94 security vendors have flagged the domain, providing modest but notable detection. The domain has been added to a single security blocklist and is actively blocked by the PhishDestroy mitigation service. Current monitoring shows the site is taken offline, but the infrastructure—registrar, nameservers (ns1.reg.ru, ns2.reg.ru), hosting IP, and TLS certificate—remains observable. Defenders should continue to block the associated IP range, enforce DNS filtering for the domain, and monitor for any re‑activation or replication of the same hosting footprint.
Given the limited detection footprint, additional passive DNS and certificate transparency monitoring is recommended to capture potential redeployment of the infrastructure. The precise malicious payload or targeted brand has not been disclosed, so threat actors may be leveraging the site for generic credential harvesting or data‑exfiltration. Organizations should remain vigilant for communications referencing a "CC data exchange" service and apply standard phishing defenses, including user education, multi‑factor authentication, and email gateway filtering.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 1 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of krab-5cc-5.ru · checked Mar 16, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।