buenoscasino[.]com
“BuenosCasino | Entretenimiento Digital Responsable en Argentina”
buenoscasino.com — Ошибка сервера (HTTP 502). Олицетворение бренда: ["argent"]; Тип мошенничества: Crypto Gambling. Сводка доказательств: VirusTotal 4/95 (Fortinet, Gridinsoft, Seclookup, SOCRadar); URLQuery 1 alert; Spamhaus DBL_PHISH; PhishDestroy score 66/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of buenoscasino.com shows a newly registered domain created on February 22, 2026 and managed by NiceNIC International Group Co., Limited. The zone is delegated to Cloudflare nameservers neil.ns.cloudflare.com and ullis.ns.cloudflare.com, and resolves to IP address 188.114.97.3, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. No TLS certificate is present, indicating that the site does not serve HTTPS traffic. The page title returned during the brief scan reads "BuenosCasino | Entretenimiento Digital Responsable en Argentina," suggesting the operator is attempting to present a legitimate‑looking Argentine gambling service.
Intelligence flags the site as a Crypto Gambling phishing kit, specifically the Gambler Scam kit, and it has been classified as a crypto gambling scam. VirusTotal scans returned four positive detections out of ninety‑five vendors, and the domain appears on a single external blocklist. PhishDestroy has already taken the domain offline, and current status reports confirm the site is not serving content.
Because the domain is offline, dynamic content cannot be examined, and the exact phishing payload remains unknown. Defenders should continue to block the domain at network perimeter and DNS layers, monitor the associated IP for any re‑hosting activity, and add the observed indicators—such as the Cloudflare IP, the specific page title, and the four VirusTotal detections—to threat‑intelligence feeds. Ongoing surveillance is advised in case the actors reactivate the domain or replicate the kit under a different address.
Данные сетевой безопасности Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | buenoscasino.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-15 02:54:45 UTC
Casino / Gambling License Verification
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260222-1DB5C2 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание