suiba-inu[.]entry-cryptolist[.]app
“CRYPTOLIST”
suiba-inu.entry-cryptolist.app — 内容不可用. 证据摘要: VirusTotal 15/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CRDF, CyRadar); PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain suiba-inu.entry-cryptolist.app is currently classified as a generic phishing site with an elevated risk rating and an active status as of July 29, 2026. Infrastructure analysis shows the domain resolves to the IPv4 address 188.114.97.3. DNS interrogation returned no nameserver records (NS_NOT_FOUND), which suggests either a deliberately minimal DNS footprint or a misconfiguration that limits visibility into the authoritative name servers. The domain is listed on a single external security blocklist and has been explicitly blocked by the PhishDestroy filtering service.
VirusTotal scans indicate that 15 of 91 security vendors have flagged the domain, providing a moderate level of detection consensus across independent scanners. No additional context such as SSL/TLS details, HTTP response codes, page titles, or brand targeting is available at this time, leaving the exact phishing payload and lure mechanisms unverified. Given the limited but consistent threat indicators, defenders should prioritize static blocking of the domain and its resolved IP address across perimeter and endpoint controls. Continuous monitoring of the IP 188.114.97.3 for any new associations, as well as periodic re‑scanning on platforms like VirusTotal, is advised to capture any evolution in malicious behavior.
Organizations employing DNS‑based filtering should ensure the domain is added to blocklists and that any heuristic rules that detect similar naming patterns (e.g., sub‑domains containing "entry-cryptolist") are enabled. Because the domain lacks observable nameserver data, sinkholing the IP or employing a passive DNS feed may help uncover additional infrastructure used by the threat actor. Until further forensic content from the landing page is released, the precautionary approach is to treat the domain as malicious and prevent user access.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。