kra36at[.]com
“Kra36 — доступ без ограничений”
PhishDestroy identifies kra36at.com as an active credential theft domain designed to harvest login credentials and cryptocurrency wallet access, operating as a crypto drainer under investigation for malicious activity. This domain was flagged with 0 detections out of 95 VirusTotal scans, registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on November 03, 2024, and resolves to IP 188.114.97.3. The presence of a Google Trust Services SSL certificate adds superficial legitimacy, though it is frequently exploited in phishing campaigns to deceive users. The technical indicators for kra36at.com are concerning due to its low detection rate on VirusTotal (0/95), indicating it has yet to be widely recognized by security vendors despite its active status. The domain’s recent creation date, paired with its association with a high-risk IP address (188.114.97.3), suggests a hastily deployed threat infrastructure aimed at evading detection. Additionally, the use of NICENIC INTERNATIONAL GROUP CO., LIMITED as the registrar is notable, as this provider has been linked to numerous malicious domains in the past. The combination of these factors—low scan detection, recent registration, and a suspicious IP—positions kra36at.com as a high-risk credential theft domain. If you have visited kra36at.com, immediately cease interaction with the site and disconnect any connected cryptocurrency wallets or accounts. Scan your device for malware using reputable antivirus software and revoke any permissions granted to the domain. Report the domain to your local cybersecurity authority or organizations like PhishDestroy, VirusTotal, or Google Safe Browsing to help mitigate further risks. Avoid entering any credentials or sensitive information on this domain, as it is likely designed to capture and exfiltrate data for financial theft or identity fraud.
Catatan laporan keluar
Snapshot bukti yang dikirim
- Dikirim
- Catatan buku besar
- 1
- ID kasus
PD-20260327-335AA1- Artefak PDF
- Bukti PDF
Teks bukti lengkap
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Intelijen Keamanan Jaringan Registrar context
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber · disinkronkan 10/08/2026
Linimasa deteksi
Pengamatan tersimpan dalam urutan kronologis.
-
Ketersediaan
Ketersediaan: pertama kali diamati sebagai dns_inactive
f93a11f87e4d -
Ketersediaan
Ketersediaan: dns_inactive → unknown
efd679149b5d -
Ketersediaan
Ketersediaan: unknown → dns_inactive
0d1485f65f33 -
Ketersediaan
Ketersediaan: dns_inactive → held
04369e2bfef9 -
Ketersediaan
Ketersediaan: held → dns_inactive
f52d526b76a1 -
Ketersediaan
Ketersediaan: dns_inactive → unknown
fce2d1113f77 -
Ketersediaan
Ketersediaan: unknown → held
9fdbef71a2c0 -
Ketersediaan
Ketersediaan: held → unknown
da9e1b093c42 -
Ketersediaan
Ketersediaan: unknown → dns_inactive
6dfe9145995c -
Ketersediaan
Ketersediaan: dns_inactive → held
0ebcea08d495
Tampilkan semua (6)
-
Ketersediaan
Ketersediaan: held → dns_inactive
641ed81dc4d5 -
Ketersediaan
Ketersediaan: dns_inactive → unknown
a7ae550efe66 -
Ketersediaan
Ketersediaan: unknown → held
250cbe42712f -
Ketersediaan
Ketersediaan: held → unknown
684ba2f07c20 -
Ketersediaan
Ketersediaan: unknown → dns_inactive
d0b7046e8c2f -
Ketersediaan
Ketersediaan: dns_inactive → held
9d86f27da122
Tangkapan tersimpan
Intelijen Domain
Detail teknisDNS, nama TLS, dan stempel waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of kra36at.com · checked Mar 27, 2026
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive