credia-layer[.]gate-cryptolist[.]com
“CRYPTOLIST”
Kanıt özeti
Analysis of credia-layer.gate-cryptolist.com shows a high‑risk phishing infrastructure that remains active as of the report date, July 29, 2026. The domain resolves to the IPv4 address 188.114.96.3 and returns an HTTP 200 response, indicating that a web service is reachable. Nameserver information is unavailable, as the resolver returned NS_NOT_FOUND, which limits attribution of the authoritative DNS provider. The site has been flagged by PhishDestroy and is listed on one external security blocklist, confirming that at least one trusted feed is already taking mitigation action.
VirusTotal data reveals that 13 of 91 scanning engines have issued a detection for the domain, providing independent confirmation of malicious intent. The combination of active HTTP service, multiple vendor detections, and inclusion on a blocklist aligns with the classification of a generic phishing operation. Gaps in the current intelligence include the absence of SSL/TLS certificate details, lack of Safe Browsing or Open Threat Exchange records, and no disclosed registrar or hosting provider information, leaving the broader infrastructure context partially unknown.
Defenders should prioritize immediate containment by adding credia-layer.gate-cryptolist.com to DNS blocklists and firewall deny rules, as well as blocking outbound connections to 188.114.96.3. Continuous monitoring of DNS queries for the domain and associated IP is advised, and the domain should be shared with internal threat‑intel platforms to enrich detection rules. Given the high risk rating and existing vendor detections, proactive network‑level filtering is recommended to prevent credential harvesting attempts targeting users.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Tespit zaman çizelgesi
-
İlk kayıt
İlk kayıtlı değer: Erişilebilir
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin