kra47-at[.]feel-fit[.]ru
“kra47 - магазин CC товаров для рыбалки”
kra47-at.feel-fit.ru — Контент недоступний. Зведення доказів: VirusTotal 11/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 83/100. Реєстратор: REGRU-RU.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged as an elevated-risk phishing site specializing in credit card fraud targeting fishing enthusiasts. Analysis indicates the domain kra47-at.feel-fit.ru masquerades as an online store offering credit card goods for fishing, a common tactic to harvest payment details or distribute malicious payloads under the guise of legitimate transactions. Infrastructure analysis reveals the domain was registered on February 08, 2025, through REGRU-RU and resolves to the IP address 193.105.134.30, hosted on AS42237 (w1n ltd) in Sweden. The site lacks SSL encryption, increasing exposure to man-in-the-middle attacks. It appears on one security blocklist and is flagged by 11 out of 95 security vendors on VirusTotal, with detection names including phishing, fraudulent site, and malicious domain. The page title, kra47 - магазин CC товаров для рыбалки, explicitly references credit card (CC) goods, a strong indicator of financial fraud intent. Organizations and individuals should implement the following mitigation steps: block the domain and its resolving IP (193.105.134.30) at the network perimeter using firewalls or DNS filtering. Monitor for credential reuse or unauthorized transactions linked to this domain, particularly for users who may have engaged with fishing-related content. Security teams should review logs for connections to the IP or domain and assess endpoints for signs of compromise. User awareness training should emphasize the risks of unencrypted sites and the prevalence of fraudulent stores targeting niche hobbies. If payment details were entered, initiate immediate fraud response protocols, including card replacement and transaction monitoring.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога