kojibuve[.]cc
“VEGAS | Crypto Casino”
kojibuve.cc — असत्यापित. घोटाले का प्रकार: Crypto Gambling. साक्ष्य सारांश: VirusTotal 7/95 (ADMINUSLabs, alphaMountain.ai, ESET, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 76/100. रजिस्ट्रार: NiceNIC.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
On 25 July 2026 analysts observed that the domain kojibuve.cc, created on 19 September 2025 through NiceNIC International Group Co., Limited, hosts a page titled “VEGAS | Crypto Casino”. The site is identified as a crypto‑gambling scam employing the publicly known Gambler Scam phishing kit. No TLS certificate is presented, indicating an HTTP‑only service. DNS resolution points to the IPv4 address 2.59.161.88, which belongs to AS207713 (GLOBAL INTERNET SOLUTIONS LLC) located in Russia. The domain’s nameservers are a.dnspod.com, b.dnspod.com and c.dnspod.com, a common configuration for fast‑flux or disposable hosting.
Gridinsoft assigned a trust score of 1 out of 100, reflecting extreme malicious confidence. VirusTotal analysis shows that 7 of 95 AV engines flagged the domain, confirming its malicious nature. The domain appears on one external blocklist and is currently listed as blocked by PhishDestroy. Although the site has been taken offline, the infrastructure components—IP address, nameserver set, and registrar details—remain reusable for future campaigns.
Defenders should immediately add kojibuve.cc and its resolving IP 2.59.161.88 to network‑level deny lists, monitor for any re‑registration attempts, and enforce outbound filtering for HTTP traffic to the identified nameservers. Continuous watch of the NiceNIC registrar for new domains using similar naming patterns is recommended. Correlating internal logs for DNS queries to a.dnspod.com, b.dnspod.com or c.dnspod.com may uncover related activity. The combination of low trust score, presence of a known gambling phishing kit, and detection by multiple vendors underscores the elevated risk posed by this infrastructure.
सुरक्षा संकेत
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
Latest Classified Outcome 2026-08-15 03:07:21 UTC
Casino / Gambling License Verification
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।