krab-16[.]cc
krab-16.cc — Último ativo conhecido (HTTP 301). Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 2/94 (Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 81/100. Registrador: NiceNIC.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, krab-16.cc, was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on March 28, 2026. The authoritative name servers are asa.ns.cloudflare.com and bob.ns.cloudflare.com, indicating the use of Cloudflare’s DNS infrastructure. HTTP requests to the site return a 403 Forbidden response, and the domain is presently taken offline, which limits direct observation of the hosted content. VirusTotal records show that 2 of 94 security vendors have flagged the domain, suggesting that at least a minority of scanners have identified malicious characteristics.
The domain appears on a single public blocklist and is explicitly blocked by the PhishDestroy service, confirming that it has been recognized by at least one anti‑phishing consortium. The risk rating assigned to the infrastructure is elevated, reflecting the combination of recent creation, cloud‑based hosting, and detection activity. Evidence beyond the registration and DNS data is sparse; no page title, brand target, or malware kit information is available, and safe‑browsing or Open Threat Exchange references were not provided. Consequently, the precise payload or credential‑harvesting mechanism cannot be confirmed, but the classification as generic phishing aligns with the observed detection signals.
Defenders should add krab-16.cc to network‑level deny lists, monitor DNS queries for the associated Cloudflare name servers, and maintain vigilance for any re‑activation of the domain. Continuous re‑scanning on VirusTotal or similar platforms is advisable to capture any future changes in detection status. Organizations employing email filters should ensure that messages containing links to krab-16.cc are quarantined or rejected, and incident response teams should treat any user reports involving this domain as potentially compromised.
Inteligência de segurança de rede Registrar context
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Latest Classified Outcome 2026-08-14 02:48:14 UTC
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo