MALICIOUS — CRITICAL
btgamb[.]com
PhishDestroy identifies btgamb.com as an active crypto drainer phishing domain operating at elevated risk.
- VirusTotal
- 18/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступність
- Доступно · доступ обмежено · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@trustname.com.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
btgamb.com — Доступно · доступ обмежено (HTTP 403). Уособлення бренду: Genericcrypto; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Certego, Chong Lua Dao); URLQuery 3 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Реєстратор: Fewmoretaps OU d/b/a T….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
PhishDestroy identifies btgamb.com as an active crypto drainer phishing domain operating at elevated risk. This domain is engineered to deceive cryptocurrency users into connecting wallets and approving malicious token approvals, enabling direct fund extraction. The infrastructure is intentionally modern, leveraging a Let’s Encrypt SSL certificate and hosting on a cloud IP (104.21.95.70) to appear legitimate to both users and automated scanners.
This domain was flagged by PhishDestroy with the following indicators: it resolves to IP 104.21.95.70, operates under a Let’s Encrypt SSL certificate, and is detected by 10 out of 95 VirusTotal security vendors. It was registered on May 6, 2026 through Fewmoretaps OU d/b/a Trustname.com, a known registrar associated with low-trust domain registrations. The domain is currently blocked by MetaMask and SEAL and appears on 2 public blocklists, indicating confirmed malicious activity within the threat intelligence community. These factors collectively demonstrate a coordinated and rapidly deployed phishing campaign targeting crypto users.
To mitigate risk, cryptocurrency users must avoid interacting with btgamb.com entirely. Never connect wallets, approve transactions, or enter credentials on this domain. If you have already visited the site, revoke any token approvals via wallet interfaces such as Etherscan or your wallet’s approval manager. Report the domain to your wallet provider, security teams, and platforms like MetaMask or Trust Wallet. Block the domain at the network level using firewall rules or DNS filtering tools. Share threat data with PhishDestroy or similar threat intelligence feeds to aid in rapid remediation. Remain vigilant for similar domains mimicking legitimate crypto services.
Обсяг даних14 recorded checks
Сигнали безпеки
Розвіддані з мережевої безпеки Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | btgamb.com |
phishing | Phishing Block |
| Hagezi Threat Feed | btgamb.com |
malicious | Sinkholed |
| DNS4EU | btgamb.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 4 identified
Twitter Ads is an advertising platform for Twitter 'microblogging' system.
ads.twitter.com 100% впевненостіFacebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com 100% впевненостіCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of btgamb.com · checked May 12, 2026
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260512-51C54C Recipient: abuse@trustname.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.