www--kra-47-cc[.]ru[.]www-kra44-cc[.]ru
“Kra47cc твой курс на успех”
www--kra-47-cc.ru.www-kra44-cc.ru — Неперевірений. Зведення доказів: VirusTotal 11/91 (BitDefender, Chong Lua Dao, CyRadar, Forcepoint ThreatSeeker, Fortinet); Google Safe Browsing flagged; PhishDestroy score 98/100. Реєстратор: DOMENUS-RU.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of the domain www--kra-47-cc.ru.www-kra44-cc.ru indicates a high‑risk generic phishing operation. The site returned HTTP 200 and presented the page title "Kra47cc твой курс на успех," suggesting a Russian‑language landing page. No additional content has been examined, so the precise phishing vector remains unconfirmed, but the classification aligns with the observed social‑engineering flag from Google Safe Browsing.
Infrastructure profiling shows the domain was registered on November 03 2025 via the registrar DOMENUS‑RU and is hosted on IP 198.251.89.30, which belongs to AS53667 (FranTech Solutions) located in the United States. The domain uses a Let's Encrypt R13 certificate, confirming TLS termination but offering no authentication beyond standard ACME issuance. Authoritative name servers are ns23.asurahosting.com and ns24.asurahosting.com, both typical of low‑cost hosting providers.
Threat intelligence feeds reinforce the malicious assessment. The domain appears on one active security blocklist and is listed by PhishDestroy. Gridinsoft assigns a trust score of 0 out of 100, indicating a complete lack of reputation. VirusTotal reports that 11 of 95 scanned security vendors flagged the domain, while Google Safe Browsing categorizes it under "SOCIAL_ENGINEERING." These independent signals converge on a consistent high‑risk profile, and the domain remains active as of the report date.
Defenders should proactively block the domain at perimeter and DNS layers, monitor outbound connections to the associated IP address, and incorporate the listed indicators—certificate authority, nameservers, and registration details—into detection rules. Continuous re‑evaluation is advised, as the phishing content may evolve, but current evidence supports immediate remediation to mitigate credential‑harvesting or other social‑engineering threats.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of www--kra-47-cc.ru.www-kra44-cc.ru · checked Mar 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога