elysyn-ai[.]entry-cryptolist[.]app
“CRYPTOLIST”
elysyn-ai.entry-cryptolist.app — Contenu indisponible. Résumé des preuves: VirusTotal 12/91 (ADMINUSLabs, BitDefender, CRDF, ESET, Fortinet); PhishDestroy score 88/100.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Analysis of the domain elysyn-ai.entry-cryptolist.app shows that it resolves to the IPv4 address 188.114.96.3. The host is currently listed on a single public blocklist; the PhishDestroy service has added the domain to its phishing denial list. VirusTotal has recorded detections from twelve of ninety‑one scanning engines, indicating that a minority of AV engines recognize malicious activity linked to the domain. Queries for authoritative name servers returned no results, meaning NS records could not be retrieved. This absence may reflect a deliberately minimal DNS footprint or a misconfiguration that hinders further reconnaissance.
The IP address 188.114.96.3 belongs to a public hosting range that is frequently reused for short‑lived malicious campaigns. No additional information about the autonomous system number, hosting provider, or geographic location is supplied in the current intelligence set, limiting the ability to attribute the infrastructure to a specific operator. Because the domain lacks resolvable NS entries, verification of DNSSEC or other protective extensions is not possible.
At this time the exact phishing lure, associated credential‑stealing pages, and targeted brand remain unknown because no page title or content analysis has been published. Defenders should incorporate the domain into URL‑filtering and web‑proxy deny lists, and consider blocking traffic to the associated IP address as a precautionary measure. Continuous monitoring of DNS queries for newly‑issued sub‑domains that resolve to the same IP is advised, given the domain is active and already triggered multiple vendor detections. Threat‑intel feeds that reference the PhishDestroy blocklist should be polled for updates, and any future VirusTotal scans should be reviewed for changes in the detection count.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif