kra22[.]at
证据摘要
The domain kra22.at has been identified as a potential threat for credential theft phishing. Initially discovered impersonating a CAPTCHA page, this domain utilizes deceptive tactics to harvest user credentials through fake security checks. Analysis does not indicate affiliation with any specific brand, but the use of a CAPTCHA page strongly suggests attempts to mimic legitimate verification processes, increasing user trust during data entry.
Technical analysis of the domain kra22.at reveals multiple indicators of malicious intent. As per VirusTotal, the domain has a detection rate of 0/95, indicating that it is not currently flagged by most security vendors at the time of assessment. The domain was created on June 08, 2026, and is currently hosted via services which include Cloudflare technologies such as Browser Insights and HTTP/3. Although not widely flagged, kra22.at appears on one security blocklist and has been reported in four threat intelligence pulses on AlienVault OTX, highlighting its circulation in certain threat intelligence communities. The SSL certificate issued by Google Trust Services does not inherently indicate illicit activity but is a noted detail in the security assessment of this domain.
Currently, the domain status is offline, indicating prompt response actions have been initiated possibly due to its listing on security blocklists such as PhishDestroy. Despite its offline status, there remains a residual risk if the domain or its associated infrastructure resurfaces. Continued monitoring and verification through blocklists and threat intelligence platforms are advised. Users are recommended to remain vigilant for similar pages masquerading as security checks and to verify the legitimacy of CAPTCHA requests before submitting any sensitive information.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
检测时间线
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
-
VirusTotal
12 → 0
域名情报
技术详情DNS、TLS 名称和时间戳
技术
识别出 3 项高置信度技术
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控