⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Detected by 15 security vendors. Exercise extreme caution — do not enter credentials or personal information. Create a complaint draft from this stored evidence, review it, and submit it yourself to the appropriate authority.
REGISTRAR NEGLIGENCE · EGREGIOUS Dynadot LLC was notified 5 months ago — the threat is still operational.
Why this matters — ICANN RAA §3.18 obligation

On PhishDestroy delivered an evidence-backed abuse report to abuse@dynadot.com with VirusTotal detections, urlscan capture, legal violations, and full screenshot evidence. More than 5 months later, the phishing infrastructure remains reachable .

Under ICANN RAA §3.18 accredited registrars are contractually obliged to “take reasonable and prompt steps to investigate and respond appropriately to any reports of abuse.” Silence beyond 24 hours after a documented notification with verifiable evidence is not a timing issue — it is a policy decision to let the operation continue. PhishDestroy\'s position: where a registrar fails to act on clear evidence, the registrar has aligned itself with the operator of the scheme and bears co-responsibility for downstream harm caused to victims from the moment of notification onward.

Elapsed since first report
5 months
Reports sent
1
Latest case ID
PD-20260220-E30F1E
Current status
Serving traffic (alive)
Domain security & threat intelligence

amlscanwallets[.]com

amlscanwallets.com için kimlik avı ve güvenlik kontrolü

“AML Check”

Threat verdict Kritik 100/100 evidence score
Availability Ulaşılabilir · erişim kısıtlı Ulaşılabilir yanıt; sayfa içeriği doğrulanmadı
Risk signals
VirusTotal algılamaları: 15/93 Marka kimliğine bürünme: Csgo Bilinen son aktif
15/93 VT 20.02.2026 Unavailable since 01.03.2026 Csgo AML Dolandırıcılığı CDN + more
Rapor özeti

VirusTotal: 15/93 tespit. Kayıtlı güvenlik verilerini inceleyin.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Evidence Summary
KRITIK
Ref
15C95309
Score
100/100
Mode
Evidence v1

PhishDestroy first recorded amlscanwallets.com on Feb 20, 2026. This English evidence brief is rebuilt from the current structured observations stored for the report. The current evidence score, computed from those stored observations, is 100/100.

The latest stored availability state is “Ulaşılabilir · erişim kısıtlı” (HTTP 403) on Aug 2, 2026 at 00:13 UTC. This is a reachability snapshot, not proof of the cause of any outage, restriction, or status change.

VirusTotal returned 15 detections from 93 scanners in the stored check on Jul 18, 2026 at 20:45 UTC. The independent blocklist snapshot recorded 0 matches across 10 configured external sources on Aug 2, 2026 at 00:20 UTC. PhishDestroy's own listing is excluded from that count. A zero-match snapshot is not a safety verdict.

Other stored evidence. Google Safe Browsing stored no positive flag on Mar 3, 2026 at 05:14 UTC. This time-bound result is not evidence of safety. AlienVault OTX stored 0 pulse references on Mar 1, 2026 at 08:21 UTC. OTX pulses are community-intelligence references, not vendor verdicts. The Spamhaus DBL snapshot stored no positive result on Jul 14, 2026 at 08:38 UTC. That result is not evidence of safety. A URLScan capture is stored from Mar 28, 2026 at 12:23 UTC.

Stored context lists registrar Dynadot LLC, IP address 104.21.27.226, apparent target Csgo. Except for the registration date, these fields do not share a source timestamp in this report and may change.

Treat these as stored, time-bound observations rather than a live safety guarantee. Source verdicts and reachability can change, and zero or missing vendor matches never prove that a domain is safe. Avoid interacting with the domain while uncertainty remains, and use the appeal process if this report is inaccurate.

VirusTotal
VirusTotal
15 det.
URLScan
URLScan
TLS certificate
Expired or unverified -95d
Observed status
Ulaşılabilir · erişim kısıtlı 403
PhishDestroy
DestroyList
Listed
Veri kapsamı VirusTotal 15 / 93 URLQuery checked — no match OTX no pulses CF Radar clean URLScan capture stored report URLScan verdict verdict unavailable DNS engellemeleri not checked TLS expired or unverified WHOIS not parsed Screenshot external capture Yönlendirme zinciri not probed

Tehdit Müdahale Pipeline

Discovery
Checks
Reports
Availability
15/16
Önleyici Keşif ve Veri Alımı
Tehdit Alındı
1/1 ✓
Tehdit Alındı
amlscanwallets.com tespit edildi ve kapsamlı analiz için sıraya alındı
20.02.2026
Threat Intelligence Checks
URLScan.io Capture · Cloudflare Radar · Web Archive · VirusTotal · Google Safe Browsing · Brand Impersonation · Forensic Evidence Collected · Technical Analysis Recorded · Site Came Back Online · Cloudflare Radar Scan · Cloudflare Radar Scan · Content Observed Unavailable
12/12 ✓
URLScan.io Capture
Stored URLScan report with capture artifacts
28.03.2026
Cloudflare Radar
Scanned via Cloudflare Radar — DNS, certificates & network data
Web Archive
Preserved in Wayback Machine — historical evidence archived
VirusTotal
15 / 93 vendors flagged on VirusTotal
18.07.2026
Google Safe Browsing
03.03.2026
Brand Impersonation
Impersonation of Csgo
Forensic Evidence Collected
Stored evidence from URLScan.io, URLQuery, stored screenshot
28.03.2026
Technical Analysis Recorded
The report contains stored technology or forensic-analysis results
02.08.2026
Site Came Back Online
Domain is responding again — monitoring resumed
27.07.2026
Cloudflare Radar Scan
Scanned via Cloudflare Radar — network analysis completed
07.03.2026
Cloudflare Radar Scan
Scanned via Cloudflare Radar — network analysis completed
07.03.2026
Content Observed Unavailable
Monitoring recorded an unavailable response (HTTP 403); the cause was not independently established
01.03.2026
Notification Records
Sent Report Recorded
1/1 ✓
Sent Report Recorded
Stored sent-report record for registrar Dynadot LLC, hosting provider, 1 abuse contact
abuse@dynadot.com
20.02.2026
Yayın ve Erişilebilirlik
DestroyList Published · Monitoring Continues
1/2
DestroyList Yayınlandı
20.02.2026
Monitoring Continues
The domain remains reachable or access-restricted; future checks may update this observation

Genel Engelleme Listesi Durumu

Kanıt Toplama

Stored Capture
2026-02-20 20:38 UTC
Malicious · 15/93 engines
Forensic screenshot of amlscanwallets.com showing the phishing page layout
IP: 104.21.27.226
Dynadot LLC
Page Title
AML Check
Impersonates
Csgo Facebook Instagram Linkedin Telegram Tiktok Twitter Youtube
TLS Certificate
Expired or unverified · Issued by Google Trust Services / WE1

Etki Alanı Analizi

Domainamlscanwallets.com
Server / ASN cloudflare · AS13335 CLOUDFLARENET - Cloudflare, Inc., US
IP Context Cloudflare shared edge origin IP hidden edge-IP reputation is not attributed to this domain
IP Address 104.21.27.226 CDN
GeoUS San Francisco, US
NetworkAS13335 · AS13335 Cloudflare, Inc.
Origin IP is hidden behind a CDN proxy. Reverse-IP on the edge IP returns unrelated tenants — origin discovery requires passive-DNS or CT cross-reference.
HTTP Durumu403 Forbidden
Elapsed Since First Report 8 days
What we count Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Ulaşılabilir · erişim kısıtlı.
What each report contains Stored outgoing report records may reference evidence available at the time, such as vendor verdicts, registration data, hosting details, classifications, or screenshots. This page does not infer the exact payload delivered, receipt, acknowledgement, or action by a recipient.
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi20.02.2026
Nameserversnicolas.ns.cloudflare.com
TLS Fingerprintb81432c683c49a1df4a5422c2fa158577f565638…
Case IDPD-20260220-E30F1E
ICANN OVERSIGHT

Accreditation and RAA context

ICANN Parasını Aldı. Hesap Verebilirlik Gelmedi.

Bu gTLD için, yukarıdaki alan adı kayıt kuruluşu bir ICANN sözleşmesi kapsamında faaliyet gösterir. ICANN; kayıt, yenileme ve transferlerle bağlantılı yıllık, değişken ve işlem bazlı ücretler tahsil eder.

Akreditasyon: paraya çevrildi. Hesap verebilirlik: lütfen daha sonra tekrar kontrol edin.

Sonra sihir başlar: ICANN RAA §3.18'i yazar, alan adı kayıt kuruluşu kendi müşteri tabanındaki kötüye kullanımı soruşturur ve her katman bir başkasının harekete geçmesini beklerken mağdurlar kanıtları ücretsiz sunar. Bu, mağdurların kendilerini daha güvende hissetmelerini sağlıyorsa harika—demek ki fatura işe yaramış.

Hesap verebilirlik üzerine hicivli not Hiçbir şey otomatik olarak gönderilmez.
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

15 / 93 security vendors flagged this domain
View on VT
ADMINUSLabs
alphaMountain.ai
CRDF
CyRadar
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Kaspersky
Netcraft
SOCRadar
Sophos
Trustwave
Webroot

Arşivlenmiş Kanıtlar

Wayback Machine Snapshot
A historical snapshot is available for evidence review
View Archive

Kanıtlar ve Dış Raporlar

Bu Siteden Etkilendiniz mi?

Yalnız değilsin ve utanacak hiçbir şey yok. Dolandırıcılar, güveni suistimal eden sofistike suçlulardır. Yaşadıklarınızı bildirmek, dolandırıcılığa karşı en etkili silahtır — yaptığınız bildirim, başkalarının mağdur olmasını önleyebilir ve kolluk kuvvetlerinin harekete geçmesine yardımcı olabilir. Sessizlik, dolandırıcıların en büyük avantajıdır. Kır şunu.

If you entered account credentials, personal or payment information, or downloaded a file from this domain, take immediate action. Below are resources to help you report the incident and protect yourself.

Europol
Find the official reporting channel for your EU country
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

Bilgi almak için ülkenizi seçin siber suçlarla ilgili resmi irtibat noktaları, or create a complaint draft →

Ülkenizi seçin...
97-country directory
AI-assisted draft — incident details are processed by the AI provider Review and submit it yourself

About This Report: amlscanwallets.com

This report presents the latest stored evidence available to PhishDestroy. Source timestamps are shown where available; availability and vendor verdicts can change after collection.

The site displays a page titled “AML Check”, which may be designed to impersonate Csgo.

amlscanwallets.com has been flagged by 15 security vendors as of August 2, 2026.

Bu listenin hatalı olduğunu düşünüyorsanız itirazda bulunmak. Metodolojimiz hakkında bilgi edinmek için SSS sayfası adresini ziyaret edin.

Herhangi Bir Alan Adını Kontrol Et

Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence

Şimdi Tara

Oltalama Olayını Bildir

Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun

Report

Canlı Tehdit Akışı

Recent phishing reports and observed availability changes

Monitor

Gelişmelerden Haberdar Olun, Güvende Kalın

Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin

Canlı Tehdit Akışı Bu İlanı İtiraz Et
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/amlscanwallets.com"
  title="PhishDestroy threat report for amlscanwallets.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Çok İçten Bir Teşekkür Mektubu

Hicivli taslak oluşturucu

Alıcı
Ücret bağlamı

Hicivli taslak. Ücret rakamları tahminidir; bu alan adına kesin olarak atfedildikleri iddia edilmez.