kra46-at[.]bere3ka[.]ru
“kra46 - AT магазин экологичных товаров”
kra46-at.bere3ka.ru — Nội dung không có sẵn. Tóm tắt bằng chứng: VirusTotal 9/95 (alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET); PhishDestroy score 77/100. Nhà đăng ký: REGRU-RU.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
This domain, kra46-at.bere3ka.ru, poses a direct threat to users by impersonating an online eco-store to harvest login credentials, payment details, or personal information. The site mimics legitimate e-commerce platforms, using social engineering tactics to deceive visitors into entering sensitive data. Credential theft of this nature often leads to unauthorized account access, financial fraud, or identity compromise, with victims frequently unaware of the breach until after damage occurs. The domain’s design and branding are crafted to appear trustworthy, leveraging the growing trend of eco-friendly consumerism to lower user defenses.
Analysis indicates this infrastructure is highly suspicious based on multiple technical indicators. The domain was registered on December 10, 2024, through REGRU-RU, a registrar frequently associated with malicious activity. It resolves to the IP address 193.105.134.30, hosted on AS42237 (w1n ltd), an autonomous system with a history of hosting phishing and fraudulent sites. Security vendors have flagged this domain, with 9 out of 95 engines on VirusTotal detecting it as malicious. Additionally, the domain lacks an SSL certificate, a critical red flag for any site handling user data, and appears on at least one security blocklist. The combination of a recent creation date, absence of encryption, and hosting on a high-risk AS further solidifies its fraudulent nature.
If you visited kra46-at.bere3ka.ru or entered any information on the site, immediate action is required to mitigate potential harm. First, cease all interaction with the domain and avoid clicking any links received via email, SMS, or social media that direct to it. If credentials were entered, change passwords for all accounts where the same or similar login details were used, prioritizing financial, email, and social media platforms. Enable multi-factor authentication (MFA) on these accounts to add an additional layer of security. Monitor financial statements and credit reports for unauthorized transactions or signs of identity theft. Report the incident to relevant authorities or fraud reporting platforms to aid in tracking and dismantling the infrastructure. Users should also scan their devices for malware, as credential theft sites often deploy malicious scripts or downloads to compromise systems further.
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Phân tích của VirusTotal
Bằng chứng và các báo cáo bên ngoài
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai