kentvs729casino[.]com
“Kent Casino”
kentvs729casino.com — Contenuto non disponibile. Simulazione del marchio: Camelot; Tipo di truffa: Crypto Gambling. Riepilogo delle prove: VirusTotal 2/95 (alphaMountain.ai, Fortinet); Spamhaus DBL_SPAM; PhishDestroy score 56/100. Registrar: Atak Domain Bilgi Tekn….
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain kentvs729casino.com was observed as an active impersonation site targeting the Camelot brand and was taken offline as of the report date. It was registered on August 29, 2025 through Atak Domain Bilgi Teknolojileri A.S., a registrar known for low‑cost bulk registrations. DNS resolution points to 212.11.64.170, an address located in Switzerland and allocated to ASN 42624 (Global-Data System IT Corporation). The site presents an SSL certificate identified as R12, which offers no indication of extended validation and is typical of disposable phishing kits. File analysis links the site to the publicly available 'Gambler Scam' phishing kit, which is commonly used to lure victims into crypto‑gambling fraud.
The HTTP response includes the page title 'Kent Casino', which does not match the targeted brand, suggesting the operators attempted to reuse a generic gambling landing page. Gridinsoft assigns the domain a trust score of 0 out of 100, reflecting a high likelihood of malicious intent. VirusTotal scans returned 2 positive detections out of 95 security vendors, indicating that at least two independent engines flagged the domain as malicious. The domain also appears on a single known blocklist and is actively blocked by PhishDestroy.
No additional public threat‑intel feeds such as OTX or Google Safe Browsing are currently reporting the domain, and no detailed content analysis beyond the page title has been released, leaving the exact phishing flow and credential collection mechanisms undocumented. Defenders should add the IP address 212.11.64.170 to network block lists, enforce DNS filtering for kentvs729casino.com, and monitor for any future re‑use of the same hosting infrastructure. Continuous re‑scanning on multi‑engine platforms is advised to capture any emerging detections.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Informazioni forensi
Casino / Gambling License Verification
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo