kra45-at[.]kra---40---------cc[.]ru
“kra45 - комплексные AT решения для CC проектов”
kra45-at.kra---40---------cc.ru — 内容不可用. 证据摘要: VirusTotal 14/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); PhishDestroy score 92/100. 注册商: UK-WIN (ASN: 42237).
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy has flagged the domain kra45-at.kra---40---------cc.ru at an elevated risk level for generic phishing activities. This particular threat was designed to deceive users through credential harvesting or malware distribution, though it has since been taken offline. Security teams should remain vigilant as similar domains may emerge.
Technical intelligence reveals that 14 out of 95 security vendors on VirusTotal flagged this domain, indicating widespread recognition as malicious. The domain was registered through UK-WIN (ASN 42237) and resolved to IP 193.105.134.30. It appeared on one security blocklist and had no SSL certificate, which is a common trait among phishing sites. The page title, "kra45 - комплексные AT решения для CC проектов," suggests targeting of Russian-speaking users involved in cryptocurrency or carding (CC) projects.
To mitigate risks, users should avoid interacting with any emails or messages containing links to this domain. Organizations should block the domain and IP 193.105.134.30 at the firewall and email gateway. Since this is generic phishing, staff should be reminded not to click suspicious links and to report any similar domains to the security team. PhishDestroy recommends monitoring for domains with similar naming patterns or registrars to stay ahead of potential copycats.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。