krashop[.]cc
Проверка домена krashop.cc на фишинг и безопасность
“Кракен Шоп - лучший интернет магазин”
krashop.cc — Контент недоступен (HTTP 502). Олицетворение бренда: Kraken; Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 4/94 (ADMINUSLabs, alphaMountain.ai, Forcepoint ThreatSeeker, SOCRadar); URLQuery 1 alert; PhishDestroy score 68/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy identifies krashop.cc as an active credential theft domain with an elevated risk level, operating since April 8, 2025. This domain employs social engineering tactics to impersonate legitimate retail brands and harvest user credentials through spoofed login portals. Its recent registration and suspicious infrastructure alignment raise immediate concerns for enterprise and individual users alike, particularly those managing payment or account data via web interfaces.
This domain was flagged after 6 out of 95 VirusTotal security vendors identified malicious content, and it resolves to IP address 188.114.96.3. The domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on April 08, 2025, and holds a Google Trust Services SSL certificate, which may be used to enhance phishing credibility. The combination of a newly created domain, low vendor detection rate, and hosting on a dynamic IP space historically linked to malicious campaigns increases the likelihood of successful credential theft operations. Due to its recent activation and elevated threat classification, krashop.cc poses a credible risk of unauthorized access to user accounts across retail, financial, and online service sectors.
To mitigate exposure, users and organizations should immediately block krashop.cc at the network and DNS levels and report the domain to their security teams and relevant abuse channels. Enterprises are advised to update web filtering policies and inspect outbound SSL/TLS traffic for connections to this domain. Individuals must avoid interacting with any login prompts reached via email, social media, or search engine links referencing "krashop" or related misspellings. If credentials were entered, users should rotate passwords immediately, enable multi-factor authentication, and monitor accounts for anomalous activity. Security teams should also cross-reference internal telemetry for confirmed or attempted access to this domain during incident response workflows.
Данные сетевой безопасности Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | worker-kv.cloudkra1.workers.dev |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Latest Classified Outcome 2026-08-08 04:02:55 UTC
Технологии · 4 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of krashop.cc · checked Mar 27, 2026
Доказательства и внешние отчеты
PD-20260326-2C33C0 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание