winna[.]casino
“Winna: Most Popular Online Crypto Casino Based on Blockchain”
winna.casino — Контент недоступний (HTTP 502). Уособлення бренду: Genericcrypto; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 12/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: NameCheap.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis indicates that winna.casino was registered on October 14, 2025 through NameCheap, Inc. The domain resolves to the Cloudflare address 172.67.205.106, which is associated with ASN 13335 and located in the United States. No TLS certificate is presented, leaving the site exposed to plain‑HTTP interception. The page title returned from the site, “Winna: Most Popular Online Crypto Casino Based on Blockchain,” together with the classification of the Gambler Scam phishing kit, suggests the operator is attempting to lure victims into a crypto‑casino credential harvesting flow. The domain appears on a single security blocklist and is actively blocked by PhishDestroy, while AlienVault OTX lists it in one threat‑intel pulse.
VirusTotal recorded 12 detections out of 93 scanned engines, reinforcing the malicious reputation. Gridinsoft assigned a trust score of 0 out of 100, indicating a complete lack of credibility. The nameservers chase.ns.cloudflare.com and kenia.ns.cloudflare.com confirm that the domain is hosted behind Cloudflare’s edge network. Current status is offline, but the infrastructure components – registrar, hosting provider, and kit – remain unchanged and could be re‑activated.
Defenders should add winna.casino to outbound and inbound deny lists, monitor the associated IP 172.67.205.106 for any future activity, and consider sinkholing the domain if possible. Continuous threat‑intel feeds should be consulted for any resurgence, and endpoint protection should be updated to reflect the 12 VirusTotal detections. Because the site lacks HTTPS, any attempted connections would be visible in network logs, providing an additional detection vector. Organizations that allow crypto‑related transactions should educate users about unsolicited casino offers and enforce strict verification of domain ownership before credential entry.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога