MALICIOUS — CRITICAL
krak16[.]com
PhishDestroy identifies krak16.com as a potential credential phishing site.
- VirusTotal
- 14/91
- Blocklists
- No stored match
- Доступність
- Контент недоступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
krak16.com — Контент недоступний (HTTP 502). Тип шахрайства: Investment Scam. Зведення доказів: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 6 alerts; PhishDestroy score 95/100. Реєстратор: Virtualia.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
PhishDestroy identifies krak16.com as a potential credential phishing site. This type of attack attempts to steal your usernames, passwords, and other sensitive information by impersonating a legitimate website or service. The goal is to trick you into entering your credentials, which the attackers then steal to gain access to your accounts. This assessment is based on several factors. VirusTotal reports that 10 out of 95 security vendors have flagged the domain as malicious. The domain was created relatively recently, on November 20, 2025, and is registered through Virtualia LLC. It resolves to the IP address 103.224.212.206 and is blocked by OISD. The site uses a Let's Encrypt SSL certificate. If you have visited krak16.com and entered any personal information, such as your username, password, or financial details, you should immediately change your passwords on any other accounts where you use the same credentials. Monitor your accounts for any signs of unauthorized activity, such as unexpected transactions or login attempts. Consider contacting your bank or financial institutions if you suspect your financial information may have been compromised.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | l.cdn-fileserver.com |
malicious | Sinkholed |
| DNS4EU | krak16.com |
malicious | Sinkholed |
| Hagezi Threat Feed | krak16.com |
malicious | Sinkholed |
| DNS4EU | ww17.krak16.com |
malicious | Sinkholed |
| Hagezi Threat Feed | ww17.krak16.com |
malicious | Sinkholed |
| DigiCert UltraDNS | s.cdn-fileserver.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 3 identified
Suite of cloud computing services running on Google infrastructure.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Content delivery network built on Google global edge infrastructure.
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260328-F75DC8 Recipient: abuse@trellian.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.