fancychicken[.]online
“777 Casino – vegas slots games”
Збережене виявлення
Виявлено маскування
- Тип маскування
content_split- Оцінка маскування
- 4/6
Зведення доказів
This domain, fancychicken.online, is flagged for brand impersonation targeting Facebook, presenting itself as a casino-themed scam page titled '777 Casino – vegas slots games.' The infrastructure appears designed to harvest user credentials under the guise of a legitimate social media login portal, while redirecting victims to fraudulent gambling content. No known drainer kit signatures were identified, but the mismatch between the advertised Facebook branding and the casino page title suggests a dual-purpose phishing and scam operation. Analysis indicates the domain holds a VirusTotal detection score of 1/95 security vendors, was registered through Go Daddy, LLC on July 24, 2025, and resolves to the IP address 104.21.35.191. It is protected by Cloudflare and uses HTTP/3, with an SSL certificate issued by Google Trust Services. The domain appears on one security blocklist and was assigned a Gridinsoft trust score of 0/100, confirming its malicious classification. No Google Safe Browsing (GSB) listing was recorded at the time of assessment. The domain is currently offline, likely due to takedown or suspension following detection by security systems. While the immediate threat has been mitigated, residual risk remains for users who may have interacted with the domain prior to its deactivation. Organizations and individuals are advised to monitor for unauthorized access attempts linked to credentials potentially exposed via this infrastructure. Network-level blocking of the IP 104.21.35.191 and domain-level filtering of fancychicken.online are recommended as proactive defensive measures.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
2 → 1
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога