kra-22-cc[.]cc
“kra-22-cc.cc”
kra-22-cc.cc — Скрытый · достижимый. Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 16/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, ESET); URLQuery 2 alerts; Spamhaus DBL_PHISH; cloaking observed; PhishDestroy score 95/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
kra-22-cc.cc is an active cryptocurrency scam domain designed to deceive users into believing they can claim fraudulent rewards or participate in fake token airdrops. The site leverages urgency and the allure of free tokens to trick visitors into connecting their wallets or submitting sensitive information, which can lead to theft of funds or credentials.
This domain was flagged by PhishDestroy and MetaMask, and is currently blocked by 2 security blocklists. VirusTotal analysis shows only 1 out of 95 security vendors detect malicious activity at this time, underscoring the stealthy nature of the threat. The domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on July 15, 2025, and resolves to IP address 185.226.92.168, which is associated with hosting numerous phishing campaigns. Its SSL certificate, issued by Let's Encrypt, adds a false veneer of legitimacy, making it harder for users to detect the deception.
If you have visited kra-22-cc.cc, immediately disconnect any connected wallets, revoke any permissions granted, and scan your device for malware. Never enter private keys, seed phrases, or wallet passwords on any website. Report the domain to your security provider and avoid interacting with any links or pop-ups on the page. Always verify URLs manually and use trusted sources for cryptocurrency transactions.
Данные сетевой безопасности Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | kra-22-cc.cc |
malicious | Sinkholed |
| DNS4EU | kra-22-cc.cc |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Latest Classified Outcome 2026-08-14 02:49:57 UTC
Технологии · 2 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Анализ VirusTotal
Доказательства и внешние отчеты
PD-20260326-43DD19 Recipient: abuse@bigcore.net Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание