Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
kra2c[.]cc
Проверка домена kra2c.cc на фишинг и безопасность
“kra2.cc”
kra2c.cc — Последний известный активный (HTTP 302). Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 7/94 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, Forcepoint ThreatSeeker, Fortinet); URLQuery 1 alert; PhishDestroy score 85/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy identifies kra2c.cc as an active credential-harvesting domain designed to trick users into surrendering sensitive login credentials. The site mimics a legitimate service, luring victims to a spoofed login page where entered credentials are immediately exfiltrated to attacker-controlled infrastructure. This is not a theoretical risk; the domain is currently resolving to 172.67.132.164 and has already been flagged by 7 out of 95 VirusTotal security vendors, indicating confirmed malicious activity. This domain was flagged based on multiple indicators of compromise. It was registered on April 04, 2025, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar known for accommodating high-risk registrations. The domain uses a Google Trust Services SSL certificate to appear legitimate, but the combination of recent creation, low detection ratio, and active hosting strongly suggests it is part of a targeted phishing campaign. The IP address 172.67.132.164 is associated with known malicious infrastructure used in credential theft operations, particularly against users expecting secure authentication flows. If you visited kra2c.cc, immediately change passwords for any accounts you may have entered. Use a password manager to generate and store new, unique credentials. Scan your device for malware using reputable antivirus tools, as phishing sites often deploy info-stealing trojans. Report the domain to your security team or use PhishDestroy’s blocklist to prevent further exposure. Avoid clicking links in unsolicited emails or messages, and verify website authenticity via official channels before entering credentials.
Данные сетевой безопасности Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | kra2c.cc |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Latest Classified Outcome 2026-08-08 02:41:01 UTC
Технологии · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of kra2c.cc · checked Mar 27, 2026
Анализ конфигурации сайта
Доказательства и внешние отчеты
PD-20260326-17CDA4 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание