elysyn-ai[.]entry-cryptolist[.]app
“CRYPTOLIST”
Zusammenfassung der Beweislage
Analysis of the domain elysyn-ai.entry-cryptolist.app shows that it resolves to the IPv4 address 188.114.96.3. The host is currently listed on a single public blocklist; the PhishDestroy service has added the domain to its phishing denial list. VirusTotal has recorded detections from twelve of ninety‑one scanning engines, indicating that a minority of AV engines recognize malicious activity linked to the domain. Queries for authoritative name servers returned no results, meaning NS records could not be retrieved. This absence may reflect a deliberately minimal DNS footprint or a misconfiguration that hinders further reconnaissance.
The IP address 188.114.96.3 belongs to a public hosting range that is frequently reused for short‑lived malicious campaigns. No additional information about the autonomous system number, hosting provider, or geographic location is supplied in the current intelligence set, limiting the ability to attribute the infrastructure to a specific operator. Because the domain lacks resolvable NS entries, verification of DNSSEC or other protective extensions is not possible.
At this time the exact phishing lure, associated credential‑stealing pages, and targeted brand remain unknown because no page title or content analysis has been published. Defenders should incorporate the domain into URL‑filtering and web‑proxy deny lists, and consider blocking traffic to the associated IP address as a precautionary measure. Continuous monitoring of DNS queries for newly‑issued sub‑domains that resolve to the same IP is advised, given the domain is active and already triggered multiple vendor detections. Threat‑intel feeds that reference the PhishDestroy blocklist should be polled for updates, and any future VirusTotal scans should be reviewed for changes in the detection count.
Data Coverage
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 12.08.2026
Erkennungszeitleiste
-
VirusTotal
8 → 14
-
Domainstatus
Erreichbar → Nicht erreichbar
Domain-Intelligenz
Technische DetailsDNS, TLS-Namen und Zeitstempel
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt