melania-wif-hat[.]entry-cryptolist[.]app
“CRYPTOLIST”
melania-wif-hat.entry-cryptolist.app — 内容不可用. 诈骗类型:Cryptocurrency. 证据摘要: VirusTotal 15/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CRDF, ESET); PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, melania-wif-hat.entry-cryptolist.app, is actively flagged as a crypto-related phishing threat by multiple security sources as of July 29, 2026. Infrastructure analysis reveals it resolves to the IP address 188.114.97.3, though no autonomous system or hosting provider details are currently available. The domain lacks configured nameservers (NS_NOT_FOUND), a common red flag in phishing infrastructure where DNS records are often misconfigured or intentionally obscured to evade detection. It appears on at least one security blocklist and is explicitly blocked by PhishDestroy, indicating prior malicious classification.
VirusTotal reports 15 of 91 security vendors detecting the domain as malicious, though the specific detection rules or payloads triggering these alerts are not detailed in available intelligence. No SSL certificate, HTTP response, or page content analysis is provided, so the exact nature of the phishing lure—whether targeting wallet credentials, token transfers, or fake airdrops—remains unconfirmed. Defenders should treat this domain as an active threat, particularly in environments handling cryptocurrency transactions.
Immediate actions include blocking the domain and IP at network perimeter controls, monitoring for internal connections to 188.114.97.3, and reviewing endpoint logs for any interaction with melania-wif-hat.entry-cryptolist.app. Given the missing nameserver records, further investigation into DNS history or passive DNS may reveal additional infrastructure ties. No brand impersonation or phishing kit details are confirmed, so attribution beyond a generic crypto-phishing classification is not supported by current evidence.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。