MALICIOUS — HIGH
aml-shield[.]me
aml-shield.me is a phishing domain engaged in brand impersonation, specifically targeting the csgo brand, and classified as a cryptocurrency scam.
- VirusTotal
- 2/93
- Blocklists
- No stored match
- Disponibilità
- Contenuto non disponibile · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
aml-shield.me — Contenuto non disponibile (HTTP 502). Simulazione del marchio: Csgo; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 2/93 (Ermes, Gridinsoft); PhishDestroy score 56/100.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
aml-shield.me is a phishing domain engaged in brand impersonation, specifically targeting the csgo brand, and classified as a cryptocurrency scam. It poses a threat by attempting to deceive users into believing it is a legitimate service related to csgo, potentially to steal sensitive information or cryptocurrency assets. The domain has been taken offline, but its elevated risk level indicates it was actively used for malicious purposes before being disabled.
Technical indicators for aml-shield.me include detection by 2 of 95 VirusTotal vendors, specifically Ermes and Gridinsoft, and it appears on 1 security blocklist, PhishDestroy. Google Safe Browsing did not flag the domain. The domain was created on February 21, 2026, at 07:01:08, and resolves to IP address 104.21.84.251, which is located in the US and hosted by AS13335 Cloudflare, Inc. The SSL certificate for the domain was issued by WE1, and the observed page title was 'AML Check'. No registrar information is available.
Given that aml-shield.me was a cryptocurrency scam involving brand impersonation, users who may have interacted with it should take immediate safety steps. If any cryptocurrency wallet connections were made, revoke all token approvals and transfer funds to a new, secure wallet. For any credentials entered, change passwords on affected accounts and enable two-factor authentication. Monitor accounts for unauthorized activity and report the incident to relevant authorities or cybersecurity platforms.
Copertura dei dati12 recorded checks
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi di VirusTotal
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.