kra55c[.]cc
“Captcha”
证据摘要
kra55c.cc was registered on March 26, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and is currently resolved to the Cloudflare‑owned address 172.67.223.90 located in Canada. The domain is delegated to the Cloudflare nameservers eleanor.ns.cloudflare.com and scott.ns.cloudflare.com, and presents a TLS certificate issued by Google Trust Services under the WE1 umbrella. These characteristics indicate the use of a reputable CDN to mask the true hosting environment. Access to the domain returns an HTTP 301 redirect and the sole visible page title is “Captcha”. No additional content or branding is observable, but the title suggests an attempt to mimic a verification page commonly used in credential‑capture campaigns. The presence of a valid SSL certificate may be intended to increase user confidence and to evade simple HTTP‑only detection mechanisms. Threat intelligence sources corroborate malicious intent. The domain appears on one security blocklist and is flagged by PhishDestroy. VirusTotal records seven detections out of ninety‑five scanned scanners, indicating that a minority of AV engines have identified suspicious activity. AlienVault OTX lists the domain in a single pulse, and Gridinsoft assigns a trust score of 0 out of 100, reflecting a high confidence of abuse. The combined evidence places the domain in the high‑risk category. Defenders should block kra55c.cc at the DNS and proxy layers and monitor outbound connections to the associated IP address. Given the active status and recent registration, continuous telemetry collection is advised to capture any evolving payloads or credential‑phishing pages that may be served behind the redirect. Incident response teams should also consider sinkholing the domain to disrupt further campaigns.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of kra55c.cc · checked Mar 27, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控