kra46-cc[.]filippok-langepas[.]ru
“kra46 - CC инновации в управлении проектами”
kra46-cc.filippok-langepas.ru — İçerik kullanılamıyor. Kanıt özeti: VirusTotal 14/95 (alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET); Google Safe Browsing flagged; PhishDestroy score 92/100. Kayıt kuruluşu: REGRU-RU.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Analysis of kra46-cc.filippok-langepas.ru shows a high‑risk credential harvesting infrastructure that was taken offline prior to the report date of July 24, 2026. The domain resolves to the public IPv4 address 193.105.134.30, which is registered to AS42237 (w1n ltd) in Sweden. Registration data indicates the domain was created on December 10, 2024 through the Russian registrar REGRU-RU. No TLS certificate is presented, meaning the site served only over HTTP, a common trait of low‑cost phishing deployments.
The page title returned by the host is "kra46 - CC инновации в управлении проектами," providing no direct indication of the targeted brand or service. Trust scoring from Gridinsoft assigns a zero out of one hundred, reflecting an extremely low reputation. The domain appears on a single security blocklist and is actively blocked by the PhishDestroy service. Google Safe Browsing classifies the URL as social engineering, and VirusTotal records 14 detections out of 95 scanned scanners, confirming malicious intent.
Nameserver delegation points to ns1.armadns.icu and ns2.armadns.icu, both of which are frequently associated with disposable or fast‑flux hosting. Current DNS queries show the domain as offline, suggesting the operators have withdrawn the site or are rotating infrastructure. Defenders should continue to block the domain at perimeter and DNS layers, monitor the associated IP 193.105.134.30 for any resurgence, and add the nameservers to watchlists for future abuse. Because the site lacks SSL and the page content is not publicly available, further forensic capture is not possible, and the primary mitigation remains proactive blocking and threat‑intel sharing.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
VirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin