kra34g[.]cc
kra34g.cc — 未验证. 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 7/94 (ADMINUSLabs, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, Fortinet); URLQuery 6 alerts; Spamhaus DBL_SPAM; PhishDestroy score 71/100. 注册商: NiceNIC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Kra34g.cc is a crypto drainer domain that was designed to steal cryptocurrency from unsuspecting users. This domain is currently offline, but during its active period it posed a significant threat to anyone who visited it. The domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, and it resolves to the IP address 104.21.65.63. According to VirusTotal, 8 out of 95 security vendors flagged this domain as malicious, indicating a notable level of consensus on its dangerous nature. Additionally, AlienVault OTX includes it in one threat intelligence pulse, and it appears on one security blocklist. The domain was created on March 29, 2026, which is relatively recent, suggesting it was part of a targeted campaign.
Based on the available intelligence, kra34g.cc was designed to function as a crypto drainer, meaning it likely attempted to trick users into connecting their cryptocurrency wallets to the site, thereby allowing the attackers to drain their funds. The fact that it was taken offline suggests that security researchers or authorities intervened, but similar domains may still be active. Users who may have visited the site should immediately revoke any permissions granted to the domain and monitor their cryptocurrency wallets for unauthorized transactions. It is also advisable to run a security scan on any devices that were used to access the site.
To stay safe, always verify the authenticity of websites before interacting with them, especially when cryptocurrency transactions are involved. PhishDestroy recommends using browser extensions that block known malicious domains and keeping security software up to date. If you encounter a domain similar to kra34g.cc, report it to threat intelligence platforms to help protect others.
网络安全情报 Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | kraken42c.cc |
malicious | Sinkholed |
| Quad9 DNS | kraken42c.cc |
malicious | Sinkholed |
| DNS0 Zero | kra34g.cc |
malicious | Sinkholed |
| Quad9 DNS | kra34g.cc |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | kra34g.cc |
malicious | Sinkholed |
| OpenDNS | kra34g.cc |
phishing | Phishing Block |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
Latest Classified Outcome 2026-08-13 02:51:49 UTC
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。