dexlab-space[.]ai-cryptolist[.]net
dexlab-space.ai-cryptolist.net — Nicht bestätigt. Zusammenfassung der Beweislage: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); PhishDestroy score 95/100. Registrar: Key-Systems.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Analysis indicates that dexlab-space.ai-cryptolist.net is currently active and classified as a high‑risk generic phishing site. The domain was registered on April 11, 2026 through Key‑Systems GmbH and has been observed serving HTTP 403 responses, a behavior often used to hide malicious payloads while still establishing a reachable foothold.
Infrastructure assessment shows the domain resolves to 104.21.68.219, an IP address owned by Cloudflare, Inc. and located in Canada. The authoritative nameservers are melissa.ns.cloudflare.com and miles.ns.cloudflare.com, both typical of Cloudflare‑hosted services. The TLS certificate is issued by Google Trust Services under the WE1 branch, confirming the presence of a valid HTTPS layer despite the underlying malicious intent.
Threat intelligence sources report a Gridinsoft trust score of 0 out of 100, reflecting the worst possible confidence rating. VirusTotal analysis returned a single positive detection out of 95 scanned security vendors, indicating that at least one vendor has flagged the domain as malicious. The domain appears on one public blocklist and is actively blocked by PhishDestroy, suggesting that defensive communities have begun to surface the threat.
Defenders should add 104.21.68.219 and the domain dexlab-space.ai-cryptolist.net to outbound and inbound deny lists, monitor DNS queries for the associated Cloudflare nameservers, and enforce TLS inspection to verify certificate details. Continuous re‑scanning on VirusTotal and similar platforms is advised to capture any escalation in detection counts. Because the registration date is recent, threat actors may still be refining their campaign, so proactive monitoring of related subdomains and newly created registrations from Key‑Systems GmbH is recommended.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Registration: ai-cryptolist.net
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For the registrable domain ai-cryptolist.net behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt