palapa[.]entry-cryptolist[.]app
“CRYPTOLIST”
ملخص الأدلة
Analysis of palapa.entry-cryptolist.app shows that the domain is currently active and has been classified as a generic phishing site. The domain resolves to the IPv4 address 188.114.96.3, and it is listed on one public security blocklist. The blocklist entry is also reflected in the PhishDestroy feed, which has explicitly blocked the domain. VirusTotal reports that 16 of 91 security vendors have flagged the domain, indicating a moderate level of consensus among detection engines.
The domain’s authoritative name server information could not be retrieved, as the nameserver query returned NS_NOT_FOUND, suggesting that the registrar’s DNS configuration may be incomplete or intentionally obscured. No additional infrastructure details such as ASN, country of hosting, SSL certificate information, HTTP response codes, or Safe Browsing status are available in the current intelligence set. Likewise, there is no evidence of related activity in open threat exchange (OTX) feeds, nor are there any documented page titles or evidence links that could provide insight into the content presented to victims. Given the limited visibility, defenders should prioritize adding the domain to local blocklists and ensure that outbound traffic to 188.114.96.3 is denied or closely monitored.
Continuous re‑evaluation of the domain through VirusTotal, passive DNS, and any emerging blocklist listings is advised, as further indicators may appear as the campaign evolves. Organizations using web filtering solutions should verify that their filters ingest the PhishDestroy blocklist to automatically block access. For incident response teams, any observed attempts to contact the domain should be logged, correlated with user activity, and investigated for credential harvesting or malware delivery attempts, even though the specific payload or credential collection mechanism has not yet been disclosed.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
3 ← 15
-
VirusTotal
15 ← 16
-
حالة النطاق
يمكن الوصول إليه ← يتعذر الوصول إليه
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب