rednote-xiaohongshu[.]entry-cryptolist[.]app
“CRYPTOLIST”
rednote-xiaohongshu.entry-cryptolist.app — Konten tidak tersedia. Jenis penipuan: Cryptocurrency. Ringkasan bukti: VirusTotal 16/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CRDF, CyRadar); PhishDestroy score 95/100.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Analysis indicates that rednote-xiaohongshu.entry-cryptolist.app resolves to the IPv4 address 188.114.97.3. The host is currently listed on a single public blocklist and has been explicitly blocked by the PhishDestroy service, suggesting that it has been observed delivering phishing content. VirusTotal reports 16 of 91 scanned security engines flagging the domain as malicious, which provides independent confirmation of malicious intent. The domain’s authoritative name server records could not be retrieved (NS_NOT_FOUND), a condition often associated with fast‑flux or temporary DNS setups used to evade takedown.
No TLS certificate information, HTTP status codes, or page title data are available in the supplied intelligence, leaving the surface‑web characteristics of the site undocumented. The lack of visible SSL/TLS parameters prevents assessment of encryption usage, and the absence of a known page title means the specific brand or lure employed by the campaign cannot be confirmed. Defenders should treat the domain as high‑confidence malicious, enforce network‑level blocking, and add the IP address 188.114.97.3 to any existing deny lists.
Continuous DNS monitoring is advised to detect any future changes to the domain’s name‑server configuration or IP address. Because the domain is already flagged by multiple vendors, security tools that ingest VirusTotal or blocklist feeds will likely generate alerts; administrators should ensure those alerts trigger appropriate incident‑response actions, including isolation of affected endpoints and forensic capture of any credential submissions. Until additional telemetry such as HTTP response content or SSL certificates becomes available, the domain should remain fully blocked and excluded from user access.
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive