no-deposit-bonus[.]com
“No Deposit Casino Bonuses - No Deposit Bonus”
no-deposit-bonus.com — Непроверенный. Тип мошенничества: Fake Exchange. Сводка доказательств: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 68/100. Регистратор: GoDaddy.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain no-deposit-bonus.com is currently under investigation for operating as a fake online casino bonus scam. Registered on April 28, 2026, through a large registrar, the site presents itself as offering 'no deposit casino bonuses' but aligns with known patterns of the Gambler Scam phishing kit. Infrastructure analysis reveals the domain resolves to 188.114.96.3, an IP address hosted by a content delivery network with a Canadian point of presence. This IP is not inherently malicious but is frequently used to mask the true origin of fraudulent sites. Technical indicators include nameservers jerry.ns.cloudflare.com and tani.ns.cloudflare.com, consistent with proxy services used to obscure hosting details. The site returns an HTTP 200 status, indicating an active and accessible page, while its SSL certificate is issued by Google Trust Services, providing a superficial layer of legitimacy. Despite these elements, the domain has been flagged by one security blocklist and appears in a single threat intelligence pulse on a collaborative platform, suggesting emerging but not yet widespread detection. At present, no antivirus engines on a major scanning platform have flagged the domain, though this absence does not confirm safety. The domain's creation date is recent, and its trust score from an independent security vendor is 0 out of 100, reflecting high suspicion. Defenders should treat this domain as a potential threat vector for credential harvesting or financial fraud, particularly targeting users seeking gambling-related promotions. Network security teams are advised to monitor for connections to this domain, review logs for user interactions, and consider blocking it at the perimeter if internal risk thresholds are met. Further analysis is required to determine the full scope of its operations and any associated threat actors.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание