MALICIOUS — CRITICAL
playamo[.]co[.]com
Analysis on July 24 2026 indicates that the domain playamo.co.com remains active and is being used for a high‑risk brand‑impersonation campaign targeting Mastercard.
- VirusTotal
- 2/91
- Blocklists
- 3 · Polkadot, Enkrypt
- 가용성
- 마지막으로 알려진 활성 · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
playamo.co.com — 마지막으로 알려진 활성 (HTTP 200). 브랜드 사칭: Mastercard; 사기 유형: Crypto Gambling. 증거 요약: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 84/100. 등록기관: Moniker Online Services.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Evidence Analysis
Analysis on July 24 2026 indicates that the domain playamo.co.com remains active and is being used for a high‑risk brand‑impersonation campaign targeting Mastercard. The site presents the page title “PlayAmo Deutschland | Offizieller Casino Login Link” and is built on WordPress running on Ubuntu with Nginx, MySQL and PHP, with HTTP Strict Transport Security enabled. The server resolves to 38.180.23.203, an address located in Austria and assigned to AS9009 (M247 Europe SRL). The TLS certificate is issued by Let’s Encrypt (R13), providing only baseline encryption without authentication of the owner.
The domain was originally registered on 16 August 1997 through Moniker Online Services LLC and continues to use the default name servers ns1‑ns4.nic.co.com. Reputation checks show a Gridinsoft trust score of 0 / 100 and two of ninety‑one VirusTotal scanners have flagged the host. The address appears on four public blocklists – PhishDestroy, Polkadot, Enkrypt and Codeesura – confirming its malicious classification. Malware analysis attributes the site to the “Gambler Scam” phishing kit, consistent with the reported crypto‑gambling theme.
While the HTTP response code is 200, the content has not been publicly dissected, leaving the exact credential‑capture mechanisms unknown. Defenders should block the domain and its resolving IP at perimeter firewalls, update DNS filtering feeds with the four listed blocklists, and monitor for outbound traffic to the host. Additional steps include scanning internal logs for any connections to 38.180.23.203, enforcing multi‑factor authentication for Mastercard‑related services, and employing threat‑intel platforms to correlate any observed use of the Gambler Scam kit with this infrastructure. Continuous re‑evaluation is advised, as the campaign may evolve its hosting or kit components.
데이터 적용 범위12 recorded checks
위협 대응 Pipeline
공개 차단 목록 상태
Casino / Gambling License Verification
사용 기술 · 6 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 분석
보관된 증거
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of playamo.co.com · checked Mar 7, 2026
증거 및 외부 보고서Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.