Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@verisign-grs.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
casino[.]neugox[.]com
“Neugox: Most Popular Online Crypto Casino Based on Blockchain”
casino.neugox.com — لم يتم التحقق منها. انتحال العلامة التجارية: Cryptoscam; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 16/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100. مسجّل النطاق: Fewmoretaps OU d/b/a T….
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
casino.neugox.com was observed on 12 July 2026 as part of a high‑risk brand impersonation campaign targeting the Base brand. The site presents a page titled “Neugox: Most Popular Online Crypto Casino Based on Blockchain” and returns HTTP 200, indicating an actively serving web server. VirusTotal scans have flagged the domain by 15 of 95 security vendors, and the Gridinsoft trust score is 0 out of 100, confirming a malicious reputation.
The domain was registered on 12 May 2026 through Fewmoretaps OU d/b/a Trustname.com. DNS resolution points to 172.67.215.227, an address owned by Cloudflare (AS13335) and located in the United States. Cloudflare’s authoritative nameservers jakub.ns.cloudflare.com and maleah.ns.cloudflare.com are in use, and the site is protected by a Let’s Encrypt certificate (issuer E8), a common choice for transient malicious infrastructure.
Analysis of the landing page aligns with a known Gambler Scam phishing kit, which typically harvests credentials by masquerading as a crypto casino. The domain appears on a single security blocklist and is currently blocked by PhishDestroy, indicating that at least one external defense provider has taken mitigation action. The combination of a fresh registration, low trust scores, and the use of a gambling‑themed kit underscores the intent to lure users seeking cryptocurrency gaming services.
Defenders should proactively block resolution of casino.neugox.com at network perimeter and incorporate the associated IP address 172.67.215.227 into threat intelligence feeds. Continuous monitoring of Cloudflare‑hosted assets for similar patterns is advised, as the attacker may reuse the same infrastructure for additional impersonation domains. Incident response teams encountering credential submissions to this site should treat them as compromised and initiate appropriate user notification and credential rotation procedures.
استخبارات أمن الشبكات Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | casino.neugox.com |
malicious | Sinkholed |
| Hagezi Threat Feed | casino.neugox.com |
malicious | Sinkholed |
| OpenDNS | casino.neugox.com |
phishing | Phishing Block |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
Registration: neugox.com
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain neugox.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260624-FA89A4 Recipient: abuse@verisign-grs.com هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب