onlyfanswin[.]cc
Analyse phishing et sécurité de onlyfanswin.cc
“Onlyfanswin: Most Popular Online Crypto Casino Based on Blockchain”
onlyfanswin.cc — Contenu indisponible (HTTP 502). Usurpation de l'identité de la marque : Genericcrypto; Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 14/95 (ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, Ermes); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 95/100. Bureau d’enregistrement: Global Domain Group.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, onlyfanswin.cc, poses as a legitimate online crypto casino to deceive users into engaging with fraudulent gambling or financial transactions. The site claims to be the 'Most Popular Online Crypto Casino Based on Blockchain,' a title designed to exploit trust in blockchain technology and cryptocurrency platforms. Users who interact with this domain risk financial loss, credential theft, or exposure to malware, as the infrastructure is engineered to mimic high-profile gambling services while operating with malicious intent. The threat primarily targets individuals seeking crypto-based betting opportunities, leveraging the growing popularity of decentralized gambling platforms to increase its credibility. Analysis indicates this domain is part of a broader pattern of brand impersonation targeting the crypto gambling sector. The domain was registered on February 21, 2026, through Global Domain Group LLC, a registrar frequently associated with high-risk domains. VirusTotal detections show 14 out of 95 security vendors flagging the domain as malicious, a significant indicator of its suspicious nature. The site resolves to the IP address 172.67.185.56, hosted on Cloudflare infrastructure (AS13335), which is commonly used to obscure the true origin of malicious sites. Additionally, the SSL certificate issued by Google Trust Services (WE1) provides a false sense of security, as encrypted connections do not guarantee legitimacy. The domain appears on one security blocklist and was taken offline, though similar infrastructure may reemerge under different names. Users who visited onlyfanswin.cc should take immediate action to mitigate potential risks. First, cease all interactions with the site and avoid entering any credentials or financial information. If any login details or cryptocurrency wallet addresses were provided, revoke access to those credentials and monitor associated accounts for unauthorized activity. Run a full antivirus scan on any device used to access the domain to detect potential malware infections. For those who engaged in financial transactions, report the incident to relevant cryptocurrency platforms or financial institutions to attempt recovery of funds. Additionally, consider reporting the domain to cybersecurity organizations or local authorities to aid in broader threat mitigation efforts. Vigilance is advised, as threat actors often reuse infrastructure or tactics in subsequent campaigns.
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | onlyfanswin.cc |
malicious | Sinkholed |
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Historique des signalements d’abus · 3 stored reports over 4 days · click to expand
-
Report #1 ICANN CC 294h still active Mar 3, 2026 · 02:58 UTCESCALATION #2 (294h active): Phishing - onlyfanswin[.]ccabuse@globaldomaingroup.com abuse@verisign-grs.com compliance@icann.org
-
Report #2 ICANN CC 330h still active Mar 4, 2026 · 14:58 UTCESCALATION #3 (330h active): Phishing - onlyfanswin[.]ccabuse@globaldomaingroup.com abuse@verisign-grs.com compliance@icann.org
-
Report #3 ICANN CC 375h still active Mar 6, 2026 · 11:26 UTCESCALATION #4 (375h active): Phishing - onlyfanswin[.]ccabuse@globaldomaingroup.com abuse@verisign-grs.com compliance@icann.org
Casino / Gambling License Verification
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
PD-20260218-3D4B1B Recipient: abuse@globaldomaingroup.com Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif