pectra-giraffe[.]entrance-cryptolist[.]com
“pectra-giraffe.entrance-cryptolist.com”
pectra-giraffe.entrance-cryptolist.com — Контент недоступен (HTTP 502). Сводка доказательств: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); CF Radar malicious; PhishDestroy score 95/100. Регистратор: Key-Systems.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis indicates that the domain pectra-giraffe.entrance-cryptolist.com was registered on 17 June 2024 through Key-Systems GmbH and resolves to the IP address 188.114.97.3. The authoritative name servers are daisy.ns.cloudflare.com and sri.ns.cloudflare.com, both operated by Cloudflare, a service frequently abused to hide malicious infrastructure. VirusTotal records show that 17 of 91 scanned security vendors flag the domain as malicious, providing vendor‑level corroboration of its threat status. The domain appears on one security blocklist and is actively blocked by the PhishDestroy filtering service.
Historical HTTP probing returned a 200 OK response, indicating that a web service was live before the domain was taken offline. No page title, SSL certificate data, or Safe Browsing verdicts are present in the current intelligence, leaving the exact content and visual lure of the site unverified. The classification as a generic phishing campaign aligns with the threat type field and the observed detection activity.
Because the site is currently offline, the specific phishing payload and targeted brand remain unknown. Defenders should maintain blocks for the domain at perimeter firewalls, proxy filters, and DNS resolvers, and incorporate the associated IP address and Cloudflare name servers into threat‑intel feeds. Continuous monitoring for re‑activation of the domain or emergence of related sub‑domains is advised, and any suspicious connections observed should be treated as malicious and subjected to containment procedures.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: entrance-cryptolist.com
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain entrance-cryptolist.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание