crknlogcn[.]gitbook[.]io
Перевірка домену crknlogcn.gitbook.io на фішинг і безпеку
crknlogcn.gitbook.io — Останній відомий активний (HTTP 307). Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 18/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CRDF); Google Safe Browsing flagged; PhishDestroy score 100/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, crknlogcn.gitbook.io, has been identified as a credential harvesting phishing site targeting users through deceptive login portals. As of the latest verification, the domain is offline, though it previously exhibited active malicious behavior. No specific brand impersonation has been confirmed, but the infrastructure aligns with common phishing tactics designed to harvest sensitive authentication details. Analysis indicates the domain was flagged by 18 of 95 security vendors on a leading malware detection platform, signaling broad consensus on its malicious nature. Registered through a privacy-focused provider on March 30, 2014, the domain resolved to the IP address 198.18.0.189, hosted on a content delivery network operated by a large US-based infrastructure provider. The SSL certificate was issued by a trusted public certificate authority, which is frequently exploited by threat actors to lend legitimacy to phishing pages. The domain appeared on one security blocklist and was explicitly flagged for phishing by a major web safety service. Infrastructure analysis reveals the domain leveraged a widely used documentation hosting platform, which is often abused due to its free tier and ease of deployment. While currently offline, the domain’s historical activity and detection metrics warrant continued monitoring. Organizations are advised to block the domain at the DNS and proxy levels, revoke any cached SSL certificates associated with it, and conduct internal audits for potential exposure. Users who may have interacted with the domain should reset credentials immediately and enable multi-factor authentication on all critical accounts.
Сигнали безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога