mobile-pay-dk-casinoer.site
Appeared in the .site zone on Friday, August 28, 2026; by the end of that day the census found redirects elsewhere. Full domain report
Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.
Own one of these names and think the listing is wrong? Tell us and a person will look.
What matched
Model opinions
Danish-language keyword doorway ('mobile-pay' = MobilePay, the Danish payment app, + 'dk-casinoer') that serves no content of its own and 302s straight into a Pulsz.com affiliate registration link with tracking IDs (bta=35207, afp clickid), i.e. a monetised gambling-affiliate squat trading on a payment brand's name to funnel Danish users to a casino not licensed in DK; not phishing since no credentials are captured on the domain itself.
The domain mobile-pay-dk-casinoer.site is a brand-typosquat (mobile≈T-Mobile, pay as lure word) with 'dk' (Denmark) and 'casinoer' (casinos) that redirects to pulsz.com, a legitimate gambling site. The typosquat name has no content of its own—it exists solely to redirect traffic via an affiliate link, a classic squat-and-redirect abuse pattern. The destination is not impersonating anyone, but this domain's sole purpose is deceptive redirection using a compromised brand name.
A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.
What the page looked like on Friday, August 28, 2026

Same data as JSON: /api/zone/domain/mobile-pay-dk-casinoer.site. This page is not indexed by search engines and does not link to the site it describes.