kra39[.]us
kra39.us — 未验证. 证据摘要: VirusTotal 1/93 (SOCRadar); PhishDestroy score 71/100. 注册商: eDomains.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain kra39.us is a generic phishing site posing no specific brand impersonation or crypto-drainer functionality. It was designed to harvest login credentials or other sensitive information through deceptive means. As of the latest verification, kra39.us has been taken offline, reducing immediate risk to users, though historical exposure may still pose a threat.
Technical indicators confirm kra39.us as a low-detection but active phishing domain. Only 1 of 95 VirusTotal security vendors flagged the domain, while Google Safe Browsing did not detect it. The domain appears on 1 security blocklist (PhishDestroy) and was registered through eDomains LLC on February 21, 2026. It resolved to IP address 172.67.169.87, hosted on Cloudflare’s infrastructure (AS13335) in the US. The SSL certificate was issued by Google Trust Services (WE1), and the observed page title was 'Just a moment...'. Gridinsoft assigned a trust score of 0/100, further indicating its malicious nature.
Users who may have interacted with kra39.us should immediately change any credentials entered on the site, particularly if reused across other platforms. Enable two-factor authentication (2FA) on all accounts as an additional security measure. Monitor financial and login activity for signs of unauthorized access or fraud. Report the domain to relevant authorities, such as the Anti-Phishing Working Group (APWG) or local cybercrime units, to aid in broader mitigation efforts.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 1 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comVirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of kra39.us · checked Mar 7, 2026
网站配置分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。