winyss[.]com
“Winyss: Most Popular Online Crypto Casino Based on Blockchain”
The domain winyss.com was observed hosting a fraudulent cryptocurrency casino front‑end and is classified as a crypto‑focused phishing site. The site was created on 27 October 2025 and is registered through NiceNIC International Group Co., Limited. It resolves to the Cloudflare address 188.114.96.3, an IP owned by AS13335 Cloudflare, Inc., and located in the United States. No TLS certificate is presented, indicating that the site operates without HTTPS protection. DNS resolution is performed by the Cloudflare nameservers bradley.ns.cloudflare.com and miki.ns.cloudflare.com.
VirusTotal reports that 12 of 95 scanned security vendors flagged winyss.com as malicious, and the domain appears on a single external blocklist. The Gridinsoft trust score of 1 / 100 further reflects an extremely low reputation. The page title returned by the server is “Winyss: Most Popular Online Crypto Casino Based on Blockchain,” matching the advertised lure. Intelligence links the front‑end to the publicly known “Gambler Scam” phishing kit, and the campaign has been tagged by PhishDestroy as blocked. The overall risk level is elevated, and the current status is offline, suggesting that the operators have taken the site down, either voluntarily or as a result of takedown actions.
While the collected indicators confirm that winyss.com was used for a crypto‑scam phishing operation, no additional infrastructure such as backup domains, command‑and‑control servers, or credential‑harvesting endpoints has been disclosed. Defensive teams should add the IP 188.114.96.3 to network‑level deny lists, enforce DNS blockings for the domain and its authoritative nameservers, and monitor the NiceNIC registrar for any re‑registration attempts. Continuous verification of cloud‑based hosting patterns—particularly the use of Cloudflare’s shared infrastructure—will aid in detecting future replicas that reuse similar kit signatures or page titles.
सुरक्षा संकेत
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 स्रोत · 10/08/2026 को सिंक किया गया
पहचान समयरेखा
संग्रहीत अवलोकन कालानुक्रमिक क्रम में।
-
Cloudflare Radar
Cloudflare Radar: पहली बार https://radar.cloudflare.com/scan/88f49a7f-30ca-49bf-a639-db12b2ea4761 के रूप में देखा गया
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।