MALICIOUS — HIGH
aureogames[.]com
This domain is flagged as a high-risk brand impersonation threat specifically targeting users of crypto casino and gambling platforms.
- VirusTotal
- 1/91
- Blocklists
- 2 · MetaMask, SEAL
- Disponibilité
- Accessible · accès restreint · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@internet.bs.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
aureogames.com — Accessible · accès restreint (HTTP 403). Usurpation de l'identité de la marque : Genericcrypto; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 1/91 (Forcepoint ThreatSeeker); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Bureau d’enregistrement: Internet Domain Servic….
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Evidence Analysis
This domain is flagged as a high-risk brand impersonation threat specifically targeting users of crypto casino and gambling platforms. Analysis indicates the site mimics legitimate blockchain-based gambling services, presenting itself as a popular online crypto casino to deceive users into depositing cryptocurrency or sharing sensitive credentials. The threat type aligns with known patterns of fraudulent gambling operations designed to exploit trust in decentralized financial ecosystems. Infrastructure analysis reveals multiple red flags corroborating the malicious classification. The domain was registered on March 01, 2026, through Internet Domain Service BS Corp., a registrar frequently associated with abusive registrations. It resolves to IP address 188.114.96.3 and is currently active behind Cloudflare protection, which may obscure further network-level investigation. The domain holds a Gridinsoft trust score of 0/100 and is detected by 15 out of 95 security vendors on VirusTotal. It appears on four security blocklists and is explicitly blocked by multiple threat intelligence feeds, including MetaMask, PhishDestroy, SEAL, and OISD. The SSL certificate is issued by Let’s Encrypt, a common choice for both legitimate and malicious sites due to its free and automated nature. Additional tracking technologies, including Twitter Ads and Facebook Pixel, suggest an attempt to amplify reach through social media advertising, increasing exposure to potential victims. Mitigation steps should focus on disrupting user access and limiting financial exposure. Network administrators are advised to block the domain and its resolving IP at the perimeter level. Cryptocurrency wallet providers and exchanges should integrate the domain into their fraud detection rules to prevent transactions linked to this address. End users should be educated to verify gambling platforms through official channels and avoid interacting with sites lacking verifiable licensing or regulatory compliance. Given the use of Cloudflare and Let’s Encrypt, further monitoring of related infrastructure is recommended to identify emerging variants or associated domains registered under similar patterns.
Couverture des données12 recorded checks
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 3 identified
Twitter Ads is an advertising platform for Twitter 'microblogging' system.
ads.twitter.com Confiance à 100 %Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com Confiance à 100 %Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of aureogames.com · checked Jun 26, 2026
Données factuelles et rapports externesIndependent lookups and source reports
PD-20260505-6452E7 Recipient: abuse@internet.bs Victim safety and official reportingImmediate actions and verified reporting channels
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.