credia-layer[.]gate-cryptolist[.]com
“CRYPTOLIST”
Riepilogo delle prove
Analysis of credia-layer.gate-cryptolist.com shows a high‑risk phishing infrastructure that remains active as of the report date, July 29, 2026. The domain resolves to the IPv4 address 188.114.96.3 and returns an HTTP 200 response, indicating that a web service is reachable. Nameserver information is unavailable, as the resolver returned NS_NOT_FOUND, which limits attribution of the authoritative DNS provider. The site has been flagged by PhishDestroy and is listed on one external security blocklist, confirming that at least one trusted feed is already taking mitigation action.
VirusTotal data reveals that 13 of 91 scanning engines have issued a detection for the domain, providing independent confirmation of malicious intent. The combination of active HTTP service, multiple vendor detections, and inclusion on a blocklist aligns with the classification of a generic phishing operation. Gaps in the current intelligence include the absence of SSL/TLS certificate details, lack of Safe Browsing or Open Threat Exchange records, and no disclosed registrar or hosting provider information, leaving the broader infrastructure context partially unknown.
Defenders should prioritize immediate containment by adding credia-layer.gate-cryptolist.com to DNS blocklists and firewall deny rules, as well as blocking outbound connections to 188.114.96.3. Continuous monitoring of DNS queries for the domain and associated IP is advised, and the domain should be shared with internal threat‑intel platforms to enrich detection rules. Given the high risk rating and existing vendor detections, proactive network‑level filtering is recommended to prevent credential harvesting attempts targeting users.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Prima registrazione
Primo valore archiviato: Raggiungibile
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo