kimchi[.]entry-cryptolist[.]app
“CRYPTOLIST”
Riepilogo delle prove
The domain kimchi.entry-cryptolist.app is currently active and classified as a generic phishing site with an elevated risk rating. Infrastructure analysis shows that the domain resolves to the IPv4 address 188.114.97.3. No authoritative name server records were returned (NS_NOT_FOUND), indicating that conventional DNS queries do not reveal the hosting provider’s name servers. The domain appears on a single security blocklist and is explicitly blocked by the PhishDestroy service.
VirusTotal reports that 14 of 91 scanned security vendors have flagged the domain as malicious, confirming a consensus of concern among a subset of scanning engines. The limited blocklist presence suggests that broader community feeds have not yet incorporated the domain, but the existing vendor detections and the PhishDestroy blocklist provide concrete evidence of abuse. Because the domain’s registration details, SSL certificate status, HTTP response codes, and page content have not been disclosed, the full scope of the phishing operation remains partially unknown.
Defenders should immediately add 188.114.97.3 to network‑level deny lists and enforce DNS filtering for kimchi.entry-cryptolist.app. Continuous monitoring of the IP reputation and periodic rescanning of the domain with multiple scanners are advised to capture any changes in detection rates. Organizations should also consider updating email security gateways to block any messages containing links to this domain, and threat‑intel teams should share the indicator set with peer groups to accelerate collective mitigation.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 12/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
VirusTotal
10 → 16
-
Stato del dominio
Raggiungibile → Non raggiungibile
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo