asset[.]kra----36----cc[.]ru
“asset.kra----36----cc.ru”
asset.kra----36----cc.ru — Контент недоступен. Сводка доказательств: VirusTotal 15/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); Google Safe Browsing flagged; PhishDestroy score 95/100. Регистратор: REGRU-RU.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain asset.kra----36----cc.ru was created on July 27, 2025 and is currently taken offline. DNS resolution points to the single IPv4 address 193.105.134.30, which is hosted in Sweden under ASN AS42237 operated by w1n ltd. The domain is registered through the REGRU‑RU registrar and uses the authoritative nameservers ns1.regerey.com and ns2.regerey.com. No TLS certificate is present, indicating that the site did not offer HTTPS encryption.
Threat intelligence sources have flagged the domain as a generic phishing site. Google Safe Browsing classifies it as a social‑engineering threat, and the Gridinsoft trust score is the minimum possible value of 0 / 100. It appears on one public blocklist and has been explicitly blocked by the PhishDestroy service. VirusTotal analysis shows that 15 of 95 scanned security vendors flagged the domain, reinforcing the malicious assessment.
The page title returned by the server matches the domain name exactly, and no additional page content has been disclosed. Given the combination of a low trust score, safe‑browser warning, blocklist presence, and multiple vendor detections, defenders should treat the domain as hostile. Recommended actions include adding the domain and its resolving IP address to network deny lists, monitoring for any re‑use of the IP space, and ensuring that endpoint protection solutions are configured to block URLs matching the domain pattern. Continuous observation of the registrar and nameserver infrastructure is advised to detect potential repurposing or fast‑flux behavior.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание