infinite-money-glitch[.]entry-cryptolist[.]app
“CRYPTOLIST”
infinite-money-glitch.entry-cryptolist.app — Контент недоступен. Тип мошенничества: Cryptocurrency. Сводка доказательств: VirusTotal 13/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CyRadar, ESET); PhishDestroy score 89/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain infinite-money-glitch.entry-cryptolist.app is currently active and classified as a generic phishing site with an elevated risk rating. Infrastructure analysis shows that the domain resolves to the IP address 188.114.97.3. No nameserver records were returned, indicating potential DNS manipulation or a short‑lived hosting configuration. VirusTotal has recorded 13 detections out of 91 scanned security vendors, suggesting moderate malicious confidence across multiple scanning engines. The domain is listed on a single external security blocklist and has been explicitly blocked by the PhishDestroy mitigation service, reinforcing its reputation as a malicious resource.
Publicly available intelligence does not include registrar details, SSL/TLS certificate information, HTTP response codes, or page title content, leaving those vectors unverified at this time. Consequently, analysts cannot confirm whether the site presents a credential‑harvesting login page or embeds additional payloads. The lack of nameserver data and the presence of a single blocklist entry suggest a relatively new or low‑profile campaign that relies on rapid deployment rather than extensive infrastructure.
Defenders should add 188.114.97.3 and the domain itself to network‑level deny lists, enforce DNS sinkholing where possible, and monitor outbound traffic for connections to the address. Continuous re‑scanning on multi‑engine platforms such as VirusTotal is recommended to capture any evolution in detection rates. Organizations employing email filtering should ensure that any messages referencing the domain are quarantined, as the observed phishing classification indicates a likelihood of credential‑stealing attempts. Because the site’s content and hosting characteristics remain unverified, threat hunters should treat any associated indicators of compromise with caution and prioritize blocking the domain until further forensic evidence becomes available.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание