Lompat ke laporan keamanan
Checked 09/08/2026 Ref 76301CDC

MALICIOUS — HIGH

Kometastar.com Impersonates Camelot – Brand Fraud

kometastar[.]com

Analysis as of July 24 2026 indicates that kometastar.com is an offline domain that was used to impersonate the Camelot brand in a crypto‑gambling fraud campaign.

65/100 evidence score · High
VirusTotal
3/95
Blocklists
No stored match
Ketersediaan
Konten tidak tersedia · HTTP 502
2026-03-05 22:36 UTCKonten tidak tersedia · HTTP 502

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 3. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
Jump to section
Ringkasan laporan

kometastar.com — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Camelot; Jenis penipuan: Crypto Gambling. Ringkasan bukti: VirusTotal 3/95 (alphaMountain.ai, BitDefender, G-Data); PhishDestroy score 65/100. Registrar: NameSilo.

Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.

Evidence Analysis

Ref 76301CDC

Analysis as of July 24 2026 indicates that kometastar.com is an offline domain that was used to impersonate the Camelot brand in a crypto‑gambling fraud campaign. The site was registered through NameSilo, LLC and created on 26 May 2025. Infrastructure inspection shows the domain resolves to the IP address 212.11.64.170, which belongs to AS42624 Global‑Data System IT Corporation and is geolocated in Switzerland. The domain is served by Cloudflare nameservers joaquin.ns.cloudflare.com and maisie.ns.cloudflare.com, but no TLS certificate is present, meaning connections would be unencrypted.

The page title captured from the site is “Kometa Casino,” matching the “Gambler Scam” phishing kit associated with crypto gambling operations. VirusTotal scans reported three detections out of ninety‑five security vendors, and the domain appears on one external blocklist. PhishDestroy has taken the domain offline, and Gridinsoft assigns it a trust score of zero out of one hundred. The brand target is explicitly listed as Camelot, confirming a brand‑impersonation motive.

While the site is no longer reachable, the observed infrastructure—particularly the Swiss hosting, lack of SSL, and use of a known gambling‑related kit—provides actionable indicators for threat‑hunting teams. Defenders should ensure that network egress to 212.11.64.170 is blocked, add the domain and its IP to local blocklists, and monitor for any future registrations that reuse the same nameservers or kit signatures. Continuous monitoring of VirusTotal and other reputation feeds is recommended to detect re‑emergence of similar campaigns.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
3 det.
URLScan
URLScan
Usia
1.2 yr
Status terpantau
Konten tidak tersedia 502
PhishDestroy
Daftar Hapus
Terdaftar
Cakupan data12 recorded checks
VirusTotal 3 / 95 URLQuery tidak diperiksa PhishStats tidak diperiksa OTX no community references CF Radar scan completed URLScan capture laporan yang disimpan URLScan verdict Analisis selesai Pemblokiran DNS tidak diperiksa TLS tidak ada data sertifikat WHOIS 15 mo old Tangkapan layar 2 captures · 2 sources Rantai pengalihan tidak diselidiki
Intelijen Keamanan Jaringan Registrar context
Registrar context NameSilo
Stored registration data identifies NameSilo as the registrar. PhishDestroy maintains separate registrar investigations; that broader material is contextual and is not an independent detection for this domain.
Review source investigation

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
14/15
Ancaman Telah Diterima
kometastar.com telah terdeteksi dan dimasukkan ke dalam antrian untuk analisis menyeluruh
29/08/2025
URLScan.io Capture
Stored URLScan report with capture artifacts
05/03/2026
URLScan Verdict
Analisis URLScan selesai; hasil tangkapan web ini tidak mengubah keputusan ancaman halaman · score 0
29/07/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
3/95 recorded on VirusTotal
16/05/2026
Google Safe Browsing
03/03/2026
Registrar Context: NameSilo
Separate registrar research is available. Registrar association is contextual and is not scored as an independent detection.
Brand Impersonation
Impersonation of Camelot
Forensic Evidence Collected
Stored evidence from URLScan.io, stored screenshot
05/03/2026
Technical Analysis Recorded
Laporan tersebut berisi teknologi tersimpan atau hasil analisis forensik.
09/08/2026
Cloudflare Radar Scan
Dipindai dengan Cloudflare Radar; analisis jaringan selesai.
07/03/2026
Complaint Draft Available
Tidak ada penyerahan yang dicatat. Anda dapat membuat draf, meninjaunya, dan menyerahkannya sendiri ke otoritas yang sesuai.
Daftar yang Dihapus Telah Dipublikasikan
29/08/2025
Content Observed Unavailable
Pemeriksaan terakhir yang disimpan menunjukkan bahwa konten yang dilaporkan tidak tersedia; ini tidak menentukan siapa atau apa yang menyebabkan perubahan tersebut.
10/05/2026
Waktu hingga pertama kali tidak tersedia
6085 jam berlalu dari deteksi hingga observasi pertama yang tidak tersedia.

Status Daftar Blokir Publik

Tangkapan tersimpan

Judul Halaman
Kometa Casino
Impersonates
Camelot

Intelijen Domain

Domain
URLScan Verdict Analisis selesai score 0 report ↗
Server / ASN nginx · AS42624 swissnetwork02 Global-Data System IT Corporation, SC
IP Context CDN shared edge origin IP hidden Reputasi Edge-IP tidak dikaitkan dengan domain ini.
Alamat IP 212.11.64.170 CDN
LokasiCH Zürich, CH
JaringanAS42624 · Global-Data System IT Corporation
IP asal tersembunyi di balik proksi CDN. Hasil IP terbalik untuk alamat edge berisi penyewa yang tidak terkait; menemukan asal memerlukan DNS pasif atau data transparansi sertifikat.
PendaftaranDibuat 26/05/2025 Expires 26/05/2026
Status HTTP502 Error
Waktu hingga pertama kali tidak tersedia 254 days
Yang kami hitung Waktu yang berlalu sejak laporan penyalahgunaan pertama kali disimpan hingga pengamatan pertama bahwa konten tersebut tidak tersedia. Hal ini tidak dapat menentukan penyebabnya.
Isi setiap laporan Catatan laporan keluar yang disimpan dapat merujuk pada bukti yang tersedia pada saat itu, seperti keputusan vendor, data pendaftaran, detail hosting, klasifikasi, atau tangkapan layar. Halaman ini tidak menyimpulkan secara pasti muatan yang dikirimkan, penerimaan, pengakuan, atau tindakan oleh penerima.
Rincian teknisDNS, SAN SSL, cap waktu
Pertama Kali Terdeteksi29/08/2025
DOM Analysisanalyzed 24/04/2026score 10/1001 brand signal
IoC Extractionscanned 03/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://kometastar.com/
Server namajoaquin.ns.cloudflare.commaisie.ns.cloudflare.com
TLS Observationscanned 11/03/2026
ICANN OVERSIGHT

Akreditasi dan konteks RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Tidak ada yang dikirim secara otomatis.
Casino / Gambling License Verification
Unverified gambling license
This domain markets casino/gambling services. Scam casinos routinely display fake Curaçao, MGA, or Kahnawake license badges that don’t exist in the real registries. Always verify the license number against the official regulator database before depositing. If the site shows a seal but no clickable registry link — or the linked registry page doesn’t exist — treat it as fraudulent.
Curaçao eGaming (official) Malta Gaming Authority UK Gambling Commission PA Gaming Control Kahnawake Gaming Gibraltar Gambling
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

3 / Vendor keamanan 95 menandai domain ini
View on VT
Last analyzed
alphaMountain.ai
BitDefender
G-Data
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri
Sematkan Laporan IniRead-only HTML widget
HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/kometastar.com"
  title="PhishDestroy threat report for kometastar.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Surat Terima Kasih yang Sangat Tulus

Pembuat draf satir

Penerima
Konteks biaya

Draf satir. Angka biaya merupakan perkiraan; tidak diklaim bahwa angka tersebut secara tepat terkait dengan domain ini.