MALICIOUS — CRITICAL
krab15cc[.]cc
This domain is classified as an elevated-risk credential phishing site targeting user authentication data.
- VirusTotal
- 10/91
- Blocklists
- No stored match
- Ketersediaan
- Terakhir diketahui aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
krab15cc.cc — Terakhir diketahui aktif (HTTP 200). Jenis penipuan: Generic Phishing. Ringkasan bukti: VirusTotal 10/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, Forcepoint ThreatSeeker); Spamhaus DBL_PHISH; PhishDestroy score 90/100. Registrar: NiceNIC.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
Is krab15cc.cc a Credential Phishing Site?
krab15cc.cc is flagged as a credential phishing domain. Detected by 11/95 security engines, this site poses elevated risk for user data compromise since March.
This domain is classified as an elevated-risk credential phishing site targeting user authentication data. Analysis indicates the infrastructure is designed to harvest login credentials through deceptive interfaces mimicking legitimate services, a common tactic in credential theft campaigns. Infrastructure analysis reveals the domain krab15cc.cc was registered on March 28, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-risk domains. The site resolves to IP address 172.67.143.135 and employs Cloudflare services, including Browser Insights and HTTP/3, to obscure backend infrastructure. Security telemetry shows 11 out of 95 detection engines flag the domain as malicious, while Gridinsoft assigns a trust score of 0/100. The domain appears on one security blocklist and is currently offline, though prior activity was intercepted by automated phishing detection systems. The SSL certificate is issued by Google Trust Services, providing a superficial layer of legitimacy. Mitigation requires immediate action from both end users and network administrators. Users who may have interacted with krab15cc.cc should invalidate any credentials entered on the site and enable multi-factor authentication on associated accounts. Network-level protections should include DNS filtering to block resolution of the domain and its associated IP. Security teams are advised to monitor for indicators of compromise, including the domain, IP, and any subdomains, while reviewing logs for connections to 172.67.143.135. Given the domain's recent creation and low detection count, continuous monitoring for related infrastructure is recommended, as threat actors often rotate domains following initial takedowns.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan Registrar context
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Latest Classified Outcome 2026-08-09 02:44:15 UTC
Teknologi · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of krab15cc.cc · checked Jun 26, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
PD-20260328-D7ADD5 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.