www--kra--37--at[.]ru
“Captcha”
www--kra--37--at.ru — 隐形 · 可达. 品牌冒充:Google; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); cloaking observed; PhishDestroy score 92/100. 注册商: DOMENUS-RU.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies www--kra--37--at.ru as an elevated-risk credential-harvesting domain currently active in the wild. The site masquerades as a legitimate service to trick users into surrendering login credentials, posing significant risk to account takeover and data exposure. Immediate action is advised for organizations and individuals who may have interacted with this domain.
This domain was registered through DOMENUS-RU on August 19, 2025, and resolves to 188.114.96.3. Despite using a Google Trust Services SSL certificate—often abused to appear trustworthy—only 2 out of 95 VirusTotal security vendors have flagged it, indicating low initial detection rates. The domain remains unlisted on major blocklists as of this assessment, increasing the likelihood of successful user deception.
To mitigate credential-harvesting risks, users should avoid interacting with www--kra--37--at.ru and report suspicious login pages immediately. Organizations are advised to inspect outbound traffic for connections to 188.114.96.3 and block the domain at the network perimeter. Enable multi-factor authentication (MFA) across all services and conduct user awareness training on recognizing phishing lures, especially those using legitimate-looking domains and SSL certificates.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of www--kra--37--at.ru · checked Mar 29, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。