rezor[.]entry-cryptolist[.]app
“CRYPTOLIST”
证据摘要
On July 29, 2026, the domain rezor.entry-cryptolist.app was observed actively hosting a generic phishing operation. The domain resolves to the IPv4 address 188.114.96.3. Passive DNS queries confirm that the A record points to this single host, and no alternate IPs have been observed. The domain is listed on one security blocklist and has been blocked by the PhishDestroy sinkhole, indicating that at least one upstream filtering system has taken mitigation action.
VirusTotal analysis shows that 15 out of 91 scanned vendors classify the domain as malicious, providing independent corroboration of phishing activity. No additional detection services beyond VirusTotal are cited, and the domain does not appear in Google Safe Browsing or OTX public feeds based on the available data. Nameserver information could not be retrieved, preventing a full assessment of the registrar footprint.
The lack of SSL/TLS certificate details, HTTP response codes, and page title information means that the surface‑level characteristics of the web content remain unverified. Given the active status, elevated risk rating, and the presence of multiple vendor detections, defenders should block DNS resolution for rezor.entry-cryptolist.app at the network perimeter, add the domain to local and cloud‑based blocklists, and monitor traffic to the associated IP address 188.114.96.3 for any anomalous connections. Continuous re‑evaluation is advised, as further intelligence such as registrar WHOIS records, certificate transparency logs, or page content analysis may emerge and refine the risk posture.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
检测时间线
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
-
VirusTotal
4 → 16
-
域名状态
可访问 → 无法访问
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控