Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
It contains 7 outgoing records; the latest is dated . The recorded recipient is domainabuse@tucows.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
gabawin[.]com
“Gabawin: Most Popular Online Crypto Casino Based on Blockchain”
gabawin.com — Não verificado. Representação da marca: Genericcrypto; Tipo de golpe: Crypto Scam. Resumo das evidências: VirusTotal 13/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Forcepoint ThreatSeeker); URLQuery 100 det.; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100. Registrador: Tucows.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, gabawin.com, is flagged as a high-risk generic_phishing site. Analysis indicates that the domain is currently active and is operating as a purported online crypto casino. The page title, 'Gabawin: Most Popular Online Crypto Casino Based on Blockchain,' suggests that the site is attempting to attract users interested in cryptocurrency gambling. The domain was registered on October 10, 2025, through Tucows Domains Inc., which is a legitimate domain registrar. However, the presence of a high-risk phishing kit, identified as the Gambler Scam, and the domain's appearance on one security blocklist, specifically PhishDestroy, are significant indicators of malicious intent. The SSL certificate is issued by Google Trust Services / WE1, which might be used to instill a false sense of security in visitors. The domain resolves to an IP address (104.21.27.142) located in the United States, and this IP is associated with Cloudflare, Inc., a well-known content delivery network and DNS provider. While the use of Cloudflare can be legitimate, it is also common for phishing sites to leverage such services to mask their true origins. The HTTP status code 200 indicates that the site is accessible and operational. Defenders reviewing this domain should be cautious of its high risk level and the presence of known phishing indicators. It is recommended to block access to this domain within network environments and to educate users about the dangers of visiting unverified crypto gambling sites. Further investigation into the site's content and backend infrastructure is advised to determine the exact nature of the phishing activities and to identify any additional threat vectors. The Gridinsoft trust score of 0/100 underscores the domain's lack of credibility and should be considered a red flag. Defenders should monitor for any attempts to distribute this domain through phishing emails or other vectors and take proactive steps to mitigate potential exposure.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Histórico de denúncias de abuso · 7 stored reports over 168 days · click to expand
-
Report #1 Feb 6, 2026 · 16:28 UTCPhishing Abuse Report: gabawin[.]comdomainabuse@tucows.com
-
Report #2 Escalation 49h still active Feb 8, 2026 · 18:23 UTCESCALATION #2 (49h active): Phishing - gabawin[.]comdomainabuse@tucows.com
-
Report #3 ICANN CC 621h still active Mar 4, 2026 · 14:19 UTCESCALATION #3 (621h active): Phishing - gabawin[.]comdomainabuse@tucows.com abuse@verisign-grs.com compliance@icann.org
-
Report #4 ICANN CC 666h still active Mar 6, 2026 · 10:43 UTCESCALATION #4 (666h active): Phishing - gabawin[.]comdomainabuse@tucows.com abuse@verisign-grs.com compliance@icann.org
-
Report #5 ICANN CC 1747h still active Apr 20, 2026 · 14:50 UTCESCALATION #5 (1747h active): Phishing - gabawin[.]comdomainabuse@tucows.com abuse@verisign-grs.com compliance@icann.org
-
Report #2 ICANN CC 480h still active Jul 14, 2026 · 14:55 UTCESCALATION #2 (480h active): Phishing - gabawin[.]comdomainabuse@tucows.com abuse@verisign-grs.com compliance@icann.org
-
Report #3 ICANN CC 718h still active Jul 24, 2026 · 12:35 UTCESCALATION #3 (718h active): Phishing - gabawin[.]comdomainabuse@tucows.com abuse@verisign-grs.com compliance@icann.org
Casino / Gambling License Verification
Análise do VirusTotal
Evidências arquivadas
Evidências e relatórios externos
PD-1770395209-gabawin.com Recipient: domainabuse@tucows.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo