kra47-at[.]mk-derbent[.]ru
“kra47 - уникальные AT рецепты для здорового питания”
kra47-at.mk-derbent.ru — 内容不可用. 证据摘要: VirusTotal 10/95 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); PhishDestroy score 80/100. 注册商: REGRU-RU.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This site, kra47-at.mk-derbent.ru, presented itself with the title "kra47 - уникальные AT рецепты для здорового питания," which translates to recipes for healthy eating. Despite this benign appearance, the domain is associated with malicious activity, likely serving as a phishing or malware distribution platform.
Technical analysis reveals significant threat indicators. VirusTotal detected the domain as malicious by 10 out of 95 security vendors, including alphaMountain.ai, BitDefender, CRDF, CyRadar, and Forcepoint ThreatSeeker. It is listed on 1 blocklist. The domain was registered on 2025-01-13 through REGRU-RU and hosted on IP address 91.236.116.20, which belongs to AS42237 w1n ltd in Sweden. The domain lacks SSL encryption and uses nameservers ns1.armadns.com and ns2.armadns.com.
The domain is currently offline. Given the high detection rate by multiple security vendors, a low GridinSoft trust score of 0/100, and its recent creation date, the risk level is high. Users who interacted with this site while it was active may be compromised and should scan their systems.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。