wagoplays[.]com
“wagoplays.com”
ملخص الأدلة
Analysis of wagoplays.com indicates active credential phishing infrastructure operating as of July 12, 2026. The domain, registered on February 21, 2026, through Key-Systems GmbH, currently resolves to 104.21.23.198, an address hosted on AS13335 (Cloudflare, Inc.) in the United States. The site returns a 200 HTTP status, signaling an accessible web page with no SSL certificate in place. Nameservers ns1.emailverification.info and ns2.emailverification.info are configured, a pattern previously associated with phishing campaigns targeting email validation and authentication workflows. Security vendors have flagged the domain, with 3 out of 95 engines on VirusTotal detecting malicious activity. While this detection rate remains low, the domain appears on one security blocklist and has been proactively blocked by at least one threat intelligence provider. The page title, wagoplays.com, matches the domain name exactly, a common tactic used to avoid immediate suspicion while presenting a seemingly legitimate interface to visitors. The absence of an SSL certificate further suggests a lack of basic security measures, increasing the likelihood of interception or manipulation of user-submitted data. Infrastructure analysis reveals the domain’s creation date aligns with recent phishing trends, where newly registered domains are frequently weaponized within weeks of registration. The use of Cloudflare’s network provides operational resilience and anonymity, complicating takedown efforts. Defenders should treat this domain as high-risk, particularly for campaigns targeting login credentials or personal information. Network-level blocking of 104.21.23.198 and monitoring of associated nameservers is recommended. Organizations should also assess whether internal users have interacted with the domain and review authentication logs for anomalous activity linked to this infrastructure.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب