dogecast-bsc[.]next-cryptolist[.]net
“CRYPTOLIST”
dogecast-bsc.next-cryptolist.net — Nicht bestätigt. Markenidentität: Google; Betrugstyp: Credential Phishing. Zusammenfassung der Beweislage: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); CF Radar malicious; PhishDestroy score 95/100. Registrar: Key-Systems.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain dogecast-bsc.next-cryptolist.net was registered on 16 September 2025 through Key-Systems GmbH and is currently hosted on Cloudflare infrastructure, as indicated by its authoritative nameservers hunts.ns.cloudflare.com and nena.ns.cloudflare.com. DNS resolution points to the IP address 104.21.64.107, which is part of Cloudflare's edge network and does not reveal a dedicated backend server. The domain appears on a single security blocklist and has been actively listed by the PhishDestroy feed, confirming that it is being used in malicious campaigns. VirusTotal scans show that 18 of 91 security vendors have flagged the domain, providing independent corroboration of its malicious status.
No additional public reputation services such as Google Safe Browsing, Open Threat Exchange, or SSL/TLS trust scores are supplied in the current intelligence set, and the HTTP response code, page title, or content snapshot have not been captured, leaving the exact phishing lure undefined. Analysis indicates that the primary risk vector is credential harvesting, consistent with the generic phishing classification. The presence of Cloudflare nameservers suggests the operators are leveraging the provider’s CDN and DDoS mitigation to hide origin infrastructure, a common tactic for phishing operators. Defenders should add the domain and its resolving IP address to deny‑list rules in firewalls, proxy filters, and DNS security solutions.
Monitoring for DNS queries to the domain and for outbound connections to the IP 104.21.64.107 can help detect compromised hosts attempting to exfiltrate credentials. Because the content has not been harvested, security teams should request a live scrape from a sandbox environment to verify the page’s behavior and to extract any embedded malicious payloads or credential‑stealing forms. Continuous re‑evaluation is recommended, as the domain may evolve its tactics or expand its hosting footprint.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Registration: next-cryptolist.net
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For the registrable domain next-cryptolist.net behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologien · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % KonfidenzHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % KonfidenzVirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of dogecast-bsc.next-cryptolist.net · checked Jul 29, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt