goldamigo[.]vip
“GOLDAMIGO | Play at the best online casino based on Blockchain”
goldamigo.vip — Контент недоступен. Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 3/95 (alphaMountain.ai, Fortinet, Webroot); URLQuery 100 det.; PhishDestroy score 100/100. Регистратор: Web Commerce Communica….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain goldamigo.vip was registered on April 19, 2025 through Web Commerce Communications Limited and is currently listed as offline. Technical analysis shows the site resolved to IP address 69.5.189.58, which is hosted in Switzerland (AS42624 Global-Data System IT Corporation). The domain uses the nameservers ns3.nameserverhub.com and ns4.nameserverhub.com and does not present an SSL certificate, indicating a lack of transport‑level encryption. The page title returned from the site is "GOLDAMIGO | Play at the best online casino based on Blockchain," aligning with the classified scam type of a crypto‑focused gambling scheme.
Reputation scoring from Gridinsoft rates the domain at 1 out of 100, and the site appears on one security blocklist. It has been actively blocked by the PhishDestroy service and was identified as employing the Gambler Scam phishing kit. VirusTotal scans reported three detections out of ninety‑five scanners, reinforcing the malicious assessment.
While the available data confirms the domain’s association with a cryptocurrency casino phishing operation, the exact content of the landing page and any credential‑harvesting mechanisms have not been publicly disclosed. Defenders should add goldamigo.vip to DNS and URL filtering policies, monitor the associated IP 69.5.189.58 for any reactivation, and watch for similarly named domains registered with the same registrar or nameservers. Continuous observation of threat‑intel feeds for the Gambler Scam kit and related indicators will aid in early detection of derivative campaigns.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание