kra-45[.]cc
“Krab5 cc - Рабочий Домен”
Kanıt özeti
PhishDestroy identifies kra-45.cc as an active crypto drainer domain designed to steal cryptocurrency assets from unsuspecting users. This domain poses a severe risk by masquerading as a legitimate cryptocurrency service, luring victims into connecting their wallets or entering sensitive credentials under false pretenses. The attackers behind kra-45.cc leverage social engineering tactics to trick users into authorizing malicious transactions or divulging private keys, resulting in irreversible financial losses. Security researchers have observed this domain engaging in phishing campaigns targeting crypto investors, with indicators pointing to automated scripts that scrape wallet data and initiate unauthorized transfers. This domain was flagged by 5 out of 95 security vendors on VirusTotal, indicating a high level of suspicion within the cybersecurity community. kra-45.cc was registered on January 22, 2025, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar known for hosting numerous malicious domains. The domain resolves to IP address 172.67.202.2 and utilizes an SSL certificate issued by Google Trust Services, a tactic commonly employed by threat actors to appear legitimate. Such combinations of recent registration, low detection rates, and trusted SSL certificates make kra-45.cc particularly deceptive and dangerous for users who do not scrutinize domain origins carefully. Users who have visited kra-45.cc should immediately disconnect from the internet, clear browser caches, and scan their devices for malware using reputable security software. If any cryptocurrency wallet connections were authorized, revoke those permissions immediately via your wallet’s interface or the platform’s security settings. Report the domain to PhishDestroy and your local cybersecurity authority if you suspect exposure. Proactively monitor wallet transactions and consider transferring remaining assets to a newly generated, offline wallet to mitigate further risk. Always verify domains against phishing databases and use hardware wallets for enhanced security when dealing with crypto-related websites.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260326-6FF57B- Yakalanan sayfa başlığı
- Krab5 cc - Рабочий Домен
- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 10.08.2026
Tespit zaman çizelgesi
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Alan adı durumu
Erişilemiyor → Erişilebilir
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of kra-45.cc · checked Mar 27, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin