Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
kra[.]31[.]cc
“ä¼è´¨åå交æç»çºª - å¤å¡ç½[Guta.com] - åå交æ,åååºå®,ååå ¨ç代è´,åå…”
Kaydedilmiş gözlem
Gözlemlenen başlık farkı
Kanıt özeti
This domain is flagged as a generic phishing threat with an elevated risk classification. Analysis indicates the infrastructure is designed to impersonate legitimate domain trading services, as evidenced by the page title referencing 'Guta.com' domain exchange functions, including domain sales, purchases, and brokerage services. The fraudulent intent is further supported by the use of deceptive branding elements to lure victims into disclosing sensitive account credentials or financial information. Infrastructure analysis reveals the following technical indicators: the domain kra.31.cc was registered on March 28, 2026, through eName Technology Co., Ltd. It resolves to the IP address 43.155.109.138 and employs a Let's Encrypt SSL certificate. Security vendor detections on VirusTotal show 7 out of 95 engines flagging the domain, while it appears on one security blocklist. The Gridinsoft trust score for this domain is 0 out of 100, indicating no established reputation or trustworthiness. The domain has since been taken offline, though residual risk remains for systems previously exposed. Mitigation for this specific threat type involves several technical controls. Network administrators should verify that endpoint protection systems have updated signatures to detect and block this domain and its associated IP address. User awareness training should emphasize the risks of interacting with unsolicited domain trading offers, particularly those received via email or messaging platforms. Organizations operating domain registration or trading services should implement multi-factor authentication for account access and monitor for unauthorized transactions. Security teams should review logs for any prior connections to 43.155.109.138 or kra.31.cc and investigate potential credential exposure. Domain registrars and hosting providers should be notified of fraudulent infrastructure to facilitate takedown procedures.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260328-171CD4- Yakalanan sayfa başlığı
- Premium Domain Brokerage - Guta - Domain Sales, Domain Acquisitions, Domain Brokerage, Domain Consulting, Domain Investment | Guta.com
- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (CN):
Cybersecurity Law of China
Criminal Law Article 285
Criminal Law Article 266 - Fraud
Chinese law strictly prohibits cyber fraud and illegal access to computer systems.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Tespit zaman çizelgesi
-
VirusTotal
1 → 7
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin