macsgo[.]com
“MYCSGO - открывай лучшие кейсы CS:GO”
Zusammenfassung der Beweislage
PhishDestroy has identified macsgo.com as a generic phishing domain specifically targeting Counter-Strike: Global Offensive players. The site masquerades as a legitimate case opening platform under the brand 'MYCSGO', luring users with promises of rare in-game items. The domain was created on March 27, 2026, and is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar often associated with malicious domains. It resolves to IP 188.114.96.3, which is hosted behind Cloudflare (AS13335). The page title 'MYCSGO - открывай лучшие кейсы CS:GO' (Russian for 'open the best CS:GO cases') further confirms the social engineering targeting Russian-speaking gamers.
Technical indicators paint a clear picture of malicious intent. VirusTotal flags the domain with a score of 12/95, meaning 12 out of 95 security vendors classify it as malicious or phishing. Its SSL certificate is issued by Google Trust Services (WE1), which is common for sites using Cloudflare. Despite being created only recently, the domain already appears on 1 security blocklist. Notably, Google Safe Browsing (GSB) did not flag it at the time of analysis, which may give users a false sense of security. The combination of a brand-new domain, a known phishing registrar, and a high VT detection rate strongly indicates this is an active threat.
As of the latest check, macsgo.com is offline, suggesting it may have been taken down by the hosting provider or registrar following abuse reports. However, the domain could reappear under a different IP or registrar. PhishDestroy assesses the remaining risk as moderate, as the same threat actors may deploy similar domains. Users who visited the site should monitor their accounts for unauthorized access and change any passwords entered on the site. This case underscores the importance of verifying the legitimacy of gaming-related websites before interacting with them, especially those offering free or discounted in-game items.
Momentaufnahme der übermittelten Beweise
- Gesendet
- Protokolleinträge
- 1
- Fall-ID
PD-20260327-4049AF- Titel der erfassten Seite
- MYCSGO - открывай лучшие кейсы CS:GO & CS2
- PDF-Artefakt
- PDF-Beweis
Vollständiger Beweistext
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 10.08.2026
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, TLS-Namen und Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Forensische Erkenntnisse
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of macsgo.com · checked Mar 27, 2026
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt