play[.]spookwin[.]com
Перевірка домену play.spookwin.com на фішинг і безпеку
“Spookwin: Most Popular Online Crypto Casino Based on Blockchain”
play.spookwin.com — Контент недоступний (HTTP 502). Уособлення бренду: Cryptoscam; Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 2 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 100/100. Реєстратор: Fewmoretaps OU d/b/a T….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, play.spookwin.com, is actively flagged as a high-risk gambling-themed scam targeting cryptocurrency users. Analysis indicates the site presents itself as an online crypto casino, as stated in its page title: 'Spookwin: Most Popular Online Crypto Casino Based on Blockchain.' The domain was registered on May 9, 2026, through Fewmoretaps OU operating under Trustname.com, a registrar frequently associated with newly created fraudulent sites. Infrastructure analysis reveals the domain resolves to 188.114.96.3, hosted under Cloudflare's network (AS13335), a common tactic to obscure origin and evade takedowns. The site employs Cloudflare nameservers (charles.ns.cloudflare.com and faye.ns.cloudflare.com) and uses a Let's Encrypt SSL certificate, which provides encryption but does not validate legitimacy. Security vendors have detected malicious activity, with 13 of 91 engines on VirusTotal flagging the domain. It is also blocked by PhishDestroy and appears on at least one security blocklist. The domain is associated with the 'Gambler Scam' phishing kit, which typically deploys fake gambling platforms to harvest credentials or misappropriate cryptocurrency deposits. Gridinsoft assigns a trust score of 1 out of 100, further indicating high risk. Defenders should treat this domain as confirmed malicious infrastructure. Immediate actions include blocking the domain and IP at network perimeters, monitoring for internal connections, and alerting users about cryptocurrency-related scams. The exact content and functionality of the site have not been manually analysed, but the combination of infrastructure, detection data, and known phishing kit association provides sufficient evidence for classification as active fraud.
Розвіддані з мережевої безпеки Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | play.spookwin.com |
malicious | Sinkholed |
| Hagezi Threat Feed | play.spookwin.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: spookwin.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain spookwin.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Технології · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
“it started with an account sending photos about free rewards from a spookwin.com. I tried it but later on I communicated with the support team they have and they said I need to cash in 50 dollars then I tried but the amount was cash in was only 45$, because of exchange currency. so I sent again another and it's total of 6,200 pesos. they doesn't let me withdraw my cash because they said I need to pay my tax 122$ then I raised suspicion. now they don't let me have my money back”
PD-20260624-1BCD51 Recipient: abuse@verisign-grs.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога