crt-ai-network[.]entry-cryptolist[.]app
crt-ai-network.entry-cryptolist.app — Inhalt nicht verfügbar. Zusammenfassung der Beweislage: VirusTotal 12/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CyRadar, ESET); PhishDestroy score 88/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Analysis on crt-ai-network.entry-cryptolist.app as of July 29, 2026 indicates that the domain is actively being used for phishing. The domain resolves to the IPv4 address 188.114.97.3, which is the only host observed in the current dataset. A DNS query for authoritative nameservers returned NS_NOT_FOUND, implying either a misconfiguration or an intentional attempt to hide the domain’s name‑server infrastructure. VirusTotal has processed the domain and twelve of ninety‑one security vendors have raised detections, providing independent corroboration of malicious intent.
The domain is listed on a single external security blocklist and is explicitly blocked by the PhishDestroy service, demonstrating that at least one reputable anti‑phishing organization has taken mitigation action. No additional intelligence such as SSL certificate details, HTTP status codes, page title, brand targeting, or content hashes is present in the supplied feed, leaving the exact phishing payload, victim lure, and operational timeline undefined. The absence of publicly visible nameserver records and the modest detection count suggest a low‑profile operation that may rely on short‑lived hosting or rapid redeployment of infrastructure.
Defenders should add both the FQDN and its resolving IP address to network‑level deny lists, enforce DNS sink‑holing for queries to this name, and monitor outbound traffic for any attempts to contact the host. Organizations that detect credential submissions or login attempts to this domain should treat them as compromised and initiate incident response procedures, including credential resets and forensic analysis. Ongoing surveillance is recommended, as future crawls may reveal additional artifacts such as URL paths, TLS fingerprints, or page content that can refine detection rules.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt