kra48[.]cc
“Captcha”
Зведення доказів
Analysis of kra48.cc shows a recently created domain that has been taken offline but exhibited several indicators of malicious use. The domain was registered on August 14, 2024 through CSL Computer Service Langenbach GmbH d/b/a joker.com and is delegated to the Cloudflare nameservers ganz.ns.cloudflare.com and naomi.ns.cloudflare.com. DNS resolution points to the IP address 172.67.69.159, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. No SSL/TLS certificate is presented for the host, meaning connections are unencrypted and vulnerable to interception.
The only visible HTTP artifact is the page title "Captcha," which suggests the site may have attempted to present a captcha challenge as part of a credential‑harvesting flow, though the exact content of the page has not been captured. Security‑vendor scanning on VirusTotal recorded three positive detections out of ninety‑five scanners, indicating that at least a small subset of vendors have identified the domain as suspicious. Independent scoring services reflect extreme risk: Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on a single security blocklist. PhishDestroy has also listed kra48.cc as a blocked resource.
The current operational status is offline, which limits real‑time observation but does not eliminate residual risk for any cached or previously distributed links. Defenders should continue to block the domain at network perimeter devices, update URL filtering and DNS sinkhole entries, and monitor for any residual references in email or web traffic. Because the site’s exact phishing kit or targeted brand is not disclosed in the available intelligence, further investigation of historic snapshots or threat‑intel feeds is recommended to determine whether the captcha page was used to lure victims into submitting credentials or other sensitive data.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога