zyrowin[.]com
Verifica phishing e sicurezza per zyrowin.com
“Zyrowin: Most Popular Online Crypto Casino Based on Blockchain”
zyrowin.com — Contenuto non disponibile (HTTP 502). Simulazione del marchio: Genericcrypto; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 13/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); URLQuery 100 det.; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100. Registrar: NiceNIC.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Analysis of zyrowin.com, observed on July 23, 2026, identifies the domain as a malicious infrastructure used for a crypto‑focused phishing campaign. The site presented the page title “Zyrowin: Most Popular Online Crypto Casino Based on Blockchain,” aligning with the “Crypto Scam” classification and the “Gambler Scam” phishing kit reported in intelligence feeds. The domain was registered on February 21, 2026 through NiceNIC International Group Co., Limited and is hosted on the IP address 188.114.97.3, which belongs to AS13335 Cloudflare, Inc., an American hosting provider. Nameservers byron.ns.cloudflare.com and reza.ns.cloudflare.com confirm the use of Cloudflare’s DNS services.
No SSL certificate was observed, indicating that the site operated over plain HTTP. VirusTotal scans returned 13 positive detections out of 93 security vendors, providing independent confirmation of malicious intent. The domain appears on a single security blocklist and has been actively blocked by the PhishDestroy service.
Current status is offline, suggesting that the operators have removed the site or are rotating infrastructure. Defenders should continue to block the domain at perimeter filters, update internal blocklists with the observed IP and nameserver entries, and monitor the registrar NiceNIC International Group for any new registrations that reuse similar naming patterns. Continuous VirusTotal re‑scans are advised in case the site reappears, and threat‑intel teams should correlate any future activity against the Gambler Scam kit to identify potential campaign evolution.
Informazioni sulla sicurezza di rete Registrar context
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 04:36:38 UTC
Cronologia delle segnalazioni di abuso · 3 stored reports over 2 days · click to expand
-
Report #1 Mar 3, 2026 · 02:36 UTCPhishing Abuse Report: zyrowin[.]comabuse@nicenic.net
-
Report #2 ICANN CC Mar 3, 2026 · 02:37 UTCESCALATION #2 (0h active): Phishing - zyrowin[.]comabuse@nicenic.net abuse@verisign-grs.com compliance@icann.org
-
Report #3 ICANN CC 36h still active Mar 4, 2026 · 14:37 UTCESCALATION #3 (36h active): Phishing - zyrowin[.]comabuse@nicenic.net abuse@verisign-grs.com compliance@icann.org
Casino / Gambling License Verification
Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterne
PD-1772505385-zyrowin.com Recipient: abuse@nicenic.net Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo