krab1cc-c[.]ru
“Krab1 CC : компьютерная техника: подбор и продажа”
krab1cc-c.ru — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Telegram; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 4/93 (alphaMountain.ai, Gridinsoft, Seclookup, SOCRadar); PhishDestroy score 65/100. रजिस्ट्रार: REGRU-RU.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain, krab1cc-c.ru, was registered on 21 February 2026 through the REGRU‑RU registrar and is hosted on Cloudflare infrastructure (ASN 13335, United States). DNS resolution points to the IPv6 address 2606:4700:3033::ac43:df7d and uses Cloudflare nameservers sureena.ns.cloudflare.com and woz.ns.cloudflare.com. No TLS certificate is presented, indicating that the site is served over plain HTTP. The page title observed during the brief scrape reads “Krab1 CC : компьютерная техника: подбор и продажа”, which is unrelated to the advertised brand but the domain is flagged as a Telegram brand impersonation.
VirusTotal has recorded four detections out of ninety‑three scanning engines, and the domain appears on a single security blocklist. PhishDestroy has already taken the site offline, and the current HTTP status is offline. Gridinsoft assigns a trust score of zero out of one hundred, reinforcing the malicious assessment. The evidence points to a classic brand‑impersonation campaign that leverages a reputable hosting provider to gain credibility while presenting unrelated commercial content to lure victims.
Uncertainty remains regarding the exact payload or credential‑harvesting mechanism because the site is no longer reachable and no detailed page capture is available. Defenders should continue to block the domain at perimeter firewalls and DNS resolvers, monitor for any resurgence of the same hostnames or IP address, and consider adding the IPv6 address to threat‑intel feeds. Ongoing observation of Cloudflare‑hosted domains with similar registration patterns is advised, as the infrastructure can be reused for future impersonation attempts.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।