MALICIOUS — CRITICAL
Verifica phishing e sicurezza per kra12cc.com
kra12cc[.]
Domain kra12cc.com is identified as an active credential harvesting scam site, posing a significant threat to users through deceptive impersonation tactics.
- VirusTotal
- 4/91
- Blocklists
- No stored match
- Disponibilità
- Ultimo attivo conosciuto · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
kra12cc.com — Ultimo attivo conosciuto (HTTP 200). Simulazione del marchio: Kraken; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); URLQuery 1 alert; PhishDestroy score 76/100. Registrar: NiceNIC.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
Domain kra12cc.com is identified as an active credential harvesting scam site, posing a significant threat to users through deceptive impersonation tactics. The site is currently operational and distributing malicious content designed to trick visitors into divulging sensitive login credentials under false pretenses. No specific brand impersonation has been confirmed at this time, though the domain's structure suggests potential targeting of unsuspecting users through spoofed service pages.
PhishDestroy identifies this domain as an active credential harvesting scam, currently unblocked and accessible. The domain was flagged by 2 of 95 VirusTotal security vendors, registered through NICENIC INTERNATIONAL GROUP CO., LIMITED. The domain resolves to IP 172.67.179.234, was created on September 04, 2024, and operates with a Google Trust Services SSL certificate. These indicators collectively suggest a recently established, potentially opportunistic scam infrastructure leveraging trusted certificate authorities to appear legitimate.
Users are strongly advised to avoid interacting with kra12cc.com due to its elevated threat profile. The presence of an SSL certificate and partial detection by security vendors indicate this domain may evade some automated defenses, requiring manual intervention to block. If encountered, report the domain to your security team or local cybercrime unit and avoid entering any personal or login information. Network administrators should add kra12cc.com and its resolving IP (172.67.179.234) to blocklists immediately to prevent further exposure within their environments.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | kra12cc.com |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:44:09 UTC
Tecnologie · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of kra12cc.com · checked Mar 29, 2026
Analisi della configurazione del sito
Dati e relazioni esterneIndependent lookups and source reports
PD-20260328-8A3A0E Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.