Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 20 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
mgmslots[.]co
“Mgmslots · Spin & Win Big”
Gespeicherte Beobachtung
Beobachteter Titelkontrast
Zusammenfassung der Beweislage
Analysis of the domain mgmslots.co indicates a high-risk phishing campaign targeting online gambling users. Registered on July 11, 2026, through Tucows Domains Inc., the domain remains active as of July 22, 2026, resolving to the IP address 104.21.18.39. Infrastructure analysis reveals Cloudflare nameservers (garret.ns.cloudflare.com and oaklyn.ns.cloudflare.com), a common tactic to obscure hosting origins and evade takedowns. Detection metrics show the domain is flagged by 6 of 95 security vendors on VirusTotal, a modest but notable signal given the domain's recent registration.
Additionally, it appears on one security blocklist, further supporting its classification as malicious. The domain's purpose aligns with generic phishing activity, though the exact content or targeted brand has not been confirmed through available evidence. No specific phishing kit, page title, or brand impersonation details were provided, limiting further attribution. Defenders should note the short lifespan of the domain—11 days at the time of this report—which is consistent with phishing campaigns designed to operate briefly before detection or takedown.
The use of Cloudflare nameservers may complicate IP-based blocking, though the resolved IP (104.21.18.39) can be monitored for additional malicious domains. Organizations are advised to block the domain at the DNS or proxy level and monitor associated infrastructure for related threats. Given the domain's recent registration and active status, continued vigilance is recommended, particularly for sectors frequently targeted by credential-harvesting campaigns, such as online gaming and financial services. No evidence currently suggests widespread adoption by threat actors, but the domain's detection profile warrants inclusion in threat intelligence feeds.
Momentaufnahme der übermittelten Beweise
- Gesendet
- Protokolleinträge
- 1
- Fall-ID
PD-20260722-849DFD
Vollständiger Beweistext
Policy Violations: Participates in DNS Abuse Framework; explicitly recognizes phishing, malware, botnets, pharming, spam-as-vector as abuse requiring registrar action
Applicable Laws: Criminal Code §342.1 (unauthorized access), §380 (fraud)
Data Coverage
Erkenntnisse zur Netzwerksicherheit
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | mgmslots.co |
malicious | Sinkholed |
| DNS4EU | mgmslots.co |
malicious | Sinkholed |
| OpenDNS | mgmslots.co |
phishing | Phishing Block |
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 12.08.2026
Casino / Gambling License Verification
Technologien
4 Technologien mit hoher Konfidenz erkannt
VirusTotal-Analyse
Archivierte Beweise
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of mgmslots.co · checked Jul 22, 2026
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt