Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
It contains 11 outgoing records; the latest is dated . The recorded recipient is abuse@domain.me.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
elonhex[.]me
فحص التصيد والأمان للنطاق elonhex.me
“Elonhex: Most Popular Online Crypto Casino Based on Blockchain”
elonhex.me — يمكن الوصول إليها · الوصول مقيد (HTTP 403). انتحال العلامة التجارية: Genericcrypto; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 13/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 94/100. مسجّل النطاق: Key-Systems.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
Analysis of the domain elonhex.me shows a coordinated crypto‑focused phishing operation that was taken offline prior to this assessment. The domain was registered on October 30, 2025 through Key‑Systems GmbH, and its DNS resolves to 188.114.97.3, an address owned by AS13335 Cloudflare, Inc. in the United States. Both authoritative nameservers, adi.ns.cloudflare.com and noah.ns.cloudflare.com, belong to Cloudflare, indicating that the site leveraged the provider’s edge network for anonymity and rapid content delivery. The TLS certificate presented by the site was issued by Google Trust Services under the WE1 root, confirming the use of a legitimate certificate chain despite the malicious intent.
An HTTP request to the host returned a 403 status code, suggesting that the site was deliberately configured to deny access or that it was already removed from service at the time of testing. The page title captured during the brief scan read "Elonhex: Most Popular Online Crypto Casino Based on Blockchain," which aligns with the intelligence classification of a crypto scam and the identified phishing kit labeled as a "Gambler Scam." VirusTotal analysis recorded 13 detections out of 95 scanning engines, reflecting a moderate consensus among security vendors that the domain is malicious. Additional reputation data shows a Gridinsoft trust score of 1 / 100 and inclusion on a single security blocklist, specifically flagged by PhishDestroy.
The combined evidence—registrar details, Cloudflare infrastructure, low trust score, phishing kit attribution, and multiple vendor detections—supports a high confidence rating that elonhex.me was used to lure victims into a fraudulent crypto casino scheme.
نطاق تغطية البيانات13 recorded checks
مؤشرات الأمان
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
سجل بلاغات إساءة الاستخدام · 11 stored reports over 90 days · click to expand
-
Report #1 Feb 6, 2026 · 16:28 UTCPhishing Abuse Report: elonhex[.]meabuse@key-systems.net
-
Report #2 Escalation 49h still active Feb 8, 2026 · 18:23 UTCESCALATION #2 (49h active): Phishing - elonhex[.]meabuse@key-systems.net
-
Report #3 ICANN CC 586h still active Mar 3, 2026 · 02:44 UTCESCALATION #3 (586h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #4 ICANN CC 622h still active Mar 4, 2026 · 15:05 UTCESCALATION #4 (622h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #5 ICANN CC 666h still active Mar 6, 2026 · 10:41 UTCESCALATION #5 (666h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #6 ICANN CC 813h still active Mar 12, 2026 · 14:01 UTCESCALATION #6 (813h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #7 ICANN CC 1148h still active Mar 26, 2026 · 16:12 UTCESCALATION #7 (1148h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #8 ICANN CC 1703h still active Apr 18, 2026 · 18:52 UTCESCALATION #8 (1703h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #9 ICANN CC 1747h still active Apr 20, 2026 · 14:44 UTCESCALATION #9 (1747h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #10 ICANN CC 2102h still active May 5, 2026 · 09:39 UTCESCALATION #10 (2102h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #11 ICANN CC 2142h still active May 7, 2026 · 01:51 UTCESCALATION #11 (2142h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
تحليل VirusTotal
الأدلة المؤرشفة
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-1770395216-elonhex.me Recipient: abuse@domain.me Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.