MALICIOUS — HIGH
aureogames.com — Crypto Casino Brand Impersonation Threat Report
aureogames[.]
This domain is flagged as a high-risk brand impersonation threat specifically targeting users of crypto casino and gambling platforms.
- VirusTotal
- 1/91
- Blocklists
- 2 · MetaMask, SEAL
- Verfügbarkeit
- Erreichbar · Zugang eingeschränkt · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@internet.bs.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
aureogames.com — Erreichbar · Zugang eingeschränkt (HTTP 403). Markenidentität: Genericcrypto; Betrugstyp: Brand Impersonation. Zusammenfassung der Beweislage: VirusTotal 1/91 (Forcepoint ThreatSeeker); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrar: Internet Domain Servic….
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Evidence Analysis
This domain is flagged as a high-risk brand impersonation threat specifically targeting users of crypto casino and gambling platforms. Analysis indicates the site mimics legitimate blockchain-based gambling services, presenting itself as a popular online crypto casino to deceive users into depositing cryptocurrency or sharing sensitive credentials. The threat type aligns with known patterns of fraudulent gambling operations designed to exploit trust in decentralized financial ecosystems. Infrastructure analysis reveals multiple red flags corroborating the malicious classification. The domain was registered on March 01, 2026, through Internet Domain Service BS Corp., a registrar frequently associated with abusive registrations. It resolves to IP address 188.114.96.3 and is currently active behind Cloudflare protection, which may obscure further network-level investigation. The domain holds a Gridinsoft trust score of 0/100 and is detected by 15 out of 95 security vendors on VirusTotal. It appears on four security blocklists and is explicitly blocked by multiple threat intelligence feeds, including MetaMask, PhishDestroy, SEAL, and OISD. The SSL certificate is issued by Let’s Encrypt, a common choice for both legitimate and malicious sites due to its free and automated nature. Additional tracking technologies, including Twitter Ads and Facebook Pixel, suggest an attempt to amplify reach through social media advertising, increasing exposure to potential victims. Mitigation steps should focus on disrupting user access and limiting financial exposure. Network administrators are advised to block the domain and its resolving IP at the perimeter level. Cryptocurrency wallet providers and exchanges should integrate the domain into their fraud detection rules to prevent transactions linked to this address. End users should be educated to verify gambling platforms through official channels and avoid interacting with sites lacking verifiable licensing or regulatory compliance. Given the use of Cloudflare and Let’s Encrypt, further monitoring of related infrastructure is recommended to identify emerging variants or associated domains registered under similar patterns.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Datenabdeckung12 recorded checks
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologien · 3 identified
Twitter Ads is an advertising platform for Twitter 'microblogging' system.
ads.twitter.com 100 % KonfidenzFacebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com 100 % KonfidenzCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % KonfidenzVirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of aureogames.com · checked Jun 26, 2026
Nachweise und externe BerichteIndependent lookups and source reports
PD-20260505-6452E7 Recipient: abuse@internet.bs Victim safety and official reportingImmediate actions and verified reporting channels
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.