الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 6. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

1win[.]ng

فحص التصيد والأمان للنطاق 1win.ng

“1win Casino & Sports Betting | 1win Nigeria”

حكم التهديد حرجة 83/100 درجة الأدلة
التوفر يمكن الوصول إليها · الوصول مقيد استجابة يمكن الوصول إليها؛ لم يتم التحقق من محتوى الصفحة
إشارات الخطر
اكتشافات VirusTotal: 6/91 URLQuery threat systems: 1 alert نوع الاحتيال: Crypto Gambling آخر نشاط معروف
6/91 VT URLQuery: 1 threat alerts OTX: 1 ref 26/02/2026 احتيال على المقامرين Crypto Gambling CDN
ملخص التقرير

1win.ng — يمكن الوصول إليها · الوصول مقيد (HTTP 403). نوع الاحتيال: Crypto Gambling. ملخص الأدلة: VT 6/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, Forcepoint ThreatSeeker, G-Data); URLQuery 1 alert; URLScan no malicious verdict; GSB no flag; BL 0; PD 83/100. مسجّل النطاق: Marcaria.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
820BAF0C
الدرجة
83/100

PhishDestroy first observed 1win.ng on Feb 26, 2026. The captured page title is “1win Casino & Sports Betting | 1win Nigeria”. Stored page analysis classifies the content as crypto gambling. Campaign clustering links the hostname to the Gambler Scam kit. Current evidence score: 83/100 (critical).

Positive findings are stored from 2 sources: VirusTotal and URLQuery. VirusTotal recorded 6 detections among 91 engines: ADMINUSLabs, BitDefender, Chong Lua Dao, Forcepoint ThreatSeeker, G-Data, Gridinsoft on Jul 27, 2026 at 03:35 UTC. URLQuery recorded 1 threat-system alert on Jun 15, 2026 at 05:49 UTC. Non-positive and contextual checks: Gridinsoft assigned a trust score of 1/100 (Phishing); no observation timestamp was retained. AlienVault OTX listed 1 community pulse reference (not vendor detections) on Mar 1, 2026 at 05:00 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 22:20 UTC. Google Safe Browsing returned no flag on Mar 2, 2026 at 20:58 UTC. URLScan completed without a malicious verdict (score 0) on Jul 29, 2026 at 02:51 UTC.

An access-restricted HTTP 403 response was recorded on Aug 7, 2026 at 22:14 UTC. Registration records for the domain list Marcaria as the registrar and Dec 26, 2021 as the creation date. At collection time, the hostname resolved to 194.67.193.49 on AS211072 (MFI-AS MFI INVESTMENTS LIMITED, CY). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. DOM analysis on Apr 23, 2026 at 07:20 UTC returned 83/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. IoC extraction on Jul 29, 2026 at 02:30 UTC retained 0 format-validated wallet addresses and 1 Telegram indicator. TLS metadata lists Google Trust Services / WE1 as the certificate issuer; checked Mar 15, 2026 at 08:05 UTC.

The content indicators and 2 positive source findings support the current crypto gambling classification.

VirusTotal
VirusTotal
6 det.
URLQuery
URLQuery
1 threat alert
OTX references
Gridinsoft
1/100
شهادة TLS
منتهية الصلاحية أو غير متحقق منها
العمر
4.6 yr
الحالة المرصودة
يمكن الوصول إليها · الوصول مقيد 403
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 6 / 91 URLQuery 1 threat-system alert PhishStats لم يتم التحقق منها OTX 1 community reference رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 56 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Gridinsoft 1/100
مؤشرات الأمان
GS Gridinsoft Analysis 1 / 100
7 3 7 1577
استخبارات أمن الشبكات
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU 1win.ng malicious Sinkholed

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
12/14

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
Telegram IoCs 1 extracted https://t.me/+bfhCv0orJDVjNmJi
الخادم / ASN cloudflare · AS211072 MFI-AS MFI INVESTMENTS LIMITED, CY
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مسجّل النطاق Marcaria
عنوان IP 194.67.193.49 CDN
الموقع الجغرافيDE Frankfurt am Main, DE
الشبكةAS211072 · MFI INVESTMENTS LIMITED
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التسجيلتم إنشاؤه 27/12/2021 Expires 27/12/2026
حالة HTTP403 Forbidden
Elapsed Since First Report 77 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: يمكن الوصول إليها · الوصول مقيد.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف26/02/2026
DOM Analysisanalyzed 23/04/2026score 83/100
IoC Extractionscanned 29/07/20260 wallet · 1 Telegram IoC
خوادم الأسماءpranab.ns.cloudflare.com
TLS Observationscanned 15/03/2026
Favicon Hash
عنوان الصفحة
1win Casino & Sports Betting | 1win Nigeria
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Google Trust Services / WE1
Casino / Gambling License Verification
Unverified gambling license
This domain markets casino/gambling services. Scam casinos routinely display fake Curaçao, MGA, or Kahnawake license badges that don’t exist in the real registries. Always verify the license number against the official regulator database before depositing. If the site shows a seal but no clickable registry link — or the linked registry page doesn’t exist — treat it as fraudulent.
Curaçao eGaming (official) Malta Gaming Authority UK Gambling Commission PA Gaming Control Kahnawake Gaming Gibraltar Gambling
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

6 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
ADMINUSLabs
BitDefender
Chong Lua Dao
Forcepoint ThreatSeeker
G-Data
Gridinsoft
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of 1win.ng · checked Mar 2, 2026

89
Needs Work
Performance
FCP
1.83s
First Contentful Paint
LCP
3.49s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
125ms
Total Blocking Time
SI
2.21s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/1win.ng"
  title="PhishDestroy threat report for 1win.ng"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>