book-of-ethereum[.]entry-cryptolist[.]app
“CRYPTOLIST”
book-of-ethereum.entry-cryptolist.app — Контент недоступен. Олицетворение бренда: Ethereum; Тип мошенничества: Crypto Drainer. Сводка доказательств: VirusTotal 16/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CyRadar, ESET); PhishDestroy score 95/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
On 29 July 2026 the domain book-of-ethereum.entry-cryptolist.app was classified as an active crypto drainer with an elevated risk rating. Infrastructure analysis shows the domain resolves to the IPv4 address 188.114.96.3. The address is hosted on a service that currently does not return any authoritative name server records (NS_NOT_FOUND), indicating that the domain’s DNS configuration is either deliberately concealed or misconfigured. The domain appears on a single security blocklist and is explicitly blocked by the PhishDestroy filtering service.
VirusTotal reports that 16 of 91 scanned security vendors have flagged the domain as malicious, corroborating the blocklist evidence. No additional intelligence such as registrar information, SSL certificate details, HTTP response codes, or page title is available in the current dataset, leaving those aspects of the infrastructure unverified. The lack of visible name server data and the limited blocklist presence suggest a low‑profile deployment, but the detection count on VirusTotal and the specific crypto‑drainer classification indicate a targeted threat aimed at illicitly extracting cryptocurrency assets. Defenders should add the resolved IP address 188.114.96.3 to network‑level deny lists, ensure that any outbound connections to this host are blocked, and monitor DNS logs for queries to the domain.
Because the domain’s registrar and SSL status are unknown, further passive DNS and certificate transparency monitoring is recommended to capture any future changes. Continuous re‑scanning of the domain with multi‑engine services will help verify whether additional vendors begin to flag the site, and integration with threat‑intel feeds that include the PhishDestroy blocklist will improve detection capability. Until more comprehensive evidence becomes available, the domain should be treated as malicious and blocked across enterprise perimeter defenses.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание