doge-superbowl[.]gate-cryptolist[.]com
“CRYPTOLIST”
doge-superbowl.gate-cryptolist.com — Контент недоступний. Зведення доказів: VirusTotal 14/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CRDF, CyRadar); PhishDestroy score 92/100. Реєстратор: Key-Systems.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain doge-superbowl.gate-cryptolist.com was registered on June 17, 2024 through Key-Systems GmbH and is currently active. Infrastructure analysis shows the domain resolves to the IP address 188.114.96.3, which belongs to Cloudflare’s network and is served by the authoritative nameservers dale.ns.cloudflare.com and vera.ns.cloudflare.com. This hosting arrangement suggests the operator is leveraging Cloudflare’s CDN and DNS services to obscure the true origin of the payload and to benefit from the provider’s built‑in DDoS mitigation.
VirusTotal has recorded 14 detections out of 91 security vendors, indicating that a non‑trivial subset of scanners classify the domain as malicious. The domain is listed on a single external security blocklist and is actively blocked by the PhishDestroy service, reinforcing the perception of phishing intent. No additional public blocklist entries or Safe Browsing alerts are present in the supplied data.
The limited evidence set does not include a page title, SSL certificate details, HTTP response codes, or any observed payload characteristics, so the exact content served by the site remains unknown. Consequently, the precise phishing vector—whether credential harvesting, credential‑stealing redirects, or other social‑engineering tactics—cannot be confirmed at this time.
Given the elevated risk rating, the active status, and the concrete detection signals from multiple vendors, defenders should treat the domain as hostile. Recommended mitigations include adding the domain to network‑level deny lists, configuring email gateways to block URLs that resolve to the IP 188.114.96.3, and monitoring DNS queries for the Cloudflare nameservers used. Continuous re‑analysis is advised to capture any changes in page content, SSL usage, or additional detection counts that may clarify the phishing methodology employed.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: gate-cryptolist.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain gate-cryptolist.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога