the-america-party[.]entry-cryptolist[.]app
“CRYPTOLIST”
the-america-party.entry-cryptolist.app — Inhalt nicht verfügbar. Zusammenfassung der Beweislage: VirusTotal 16/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CRDF, CyRadar); PhishDestroy score 95/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain the-america-party.entry-cryptolist.app is currently active and classified as a generic phishing site. Infrastructure analysis shows it resolves to the IPv4 address 188.114.96.3. No nameserver records were returned during DNS queries, indicated by NS_NOT_FOUND, which may hinder rapid takedown but also suggests a deliberately minimal setup. VirusTotal has recorded detections from 16 of 91 AV engines, confirming that multiple security products recognize malicious behavior associated with this host.
The domain appears on a single external blocklist and is explicitly blocked by the PhishDestroy filtering service, demonstrating that at least one community‑maintained feed has incorporated it into defensive controls. Evidence beyond these points is limited; no public page title, SSL certificate details, HTTP response codes, or Safe Browsing verdicts have been disclosed in the available intelligence. Consequently, the full scope of the phishing campaign—such as targeted brands, lure content, or credential‑harvesting mechanisms—remains uncertain. Analysts should treat any traffic to this domain as hostile and consider it a high‑confidence indicator of compromise for endpoint and network monitoring.
Recommended mitigation steps include adding 188.114.96.3 to deny lists across perimeter firewalls, intrusion‑prevention systems, and DNS filtering solutions; confirming that the domain is present in local URL filtering policies; and monitoring for outbound connections from internal hosts to this address. Incident response teams should also query threat‑intel platforms for any newly emerging indicators related to the domain, and, if feasible, submit the URL to additional sandboxing services to capture any payloads that may be delivered during the phishing flow. Continuous re‑evaluation is advised, as further reconnaissance could reveal additional infrastructure or victim targeting patterns.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt