dopamine[.]entry-cryptolist[.]app
“CRYPTOLIST”
证据摘要
The domain dopamine.entry-cryptolist.app is currently active and has been assigned an elevated risk rating. Infrastructure analysis shows that the domain resolves to the IPv4 address 188.114.96.3. No authoritative nameserver records were returned during DNS queries, which may indicate intentional obfuscation or a misconfigured hosting setup. The domain appears on a single security blocklist and is explicitly listed as blocked by the PhishDestroy mitigation service. VirusTotal scans have returned detections from 11 of 91 submitted security engines, confirming the presence of malicious payloads or behavior associated with phishing campaigns.
The aggregate evidence suggests that the site is being used to harvest credentials or otherwise deceive users, consistent with the generic phishing designation supplied in the threat taxonomy. While the available data confirms the malicious nature of the domain, several aspects remain unknown. The specific phishing kit, target brand, page title, and SSL certificate details have not been disclosed, limiting the ability to attribute the campaign to a particular threat actor or to map the exact user‑experience flow. Additionally, the lack of multiple blocklist references may reflect a recent deployment or limited propagation of the indicator across community feeds. Defenders should prioritize immediate remediation actions.
Network perimeter controls ought to block DNS resolution for dopamine.entry-cryptolist.app and any traffic to the associated IP address 188.114.96.3. Endpoint protection solutions should be updated with the observed VirusTotal detection signatures to improve detection rates. Continuous monitoring of the IP space and related domains is advised, as threat actors frequently rotate hosting assets. Organizations employing web filtering should ensure the domain is added to deny lists across all filtering layers.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
检测时间线
-
VirusTotal
4 → 13
-
域名状态
可访问 → 无法访问
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控