الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 13. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . It contains 11 outgoing records; the latest is dated . The recorded recipient is abuse@domain.me. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
6 months
Reports sent
11
Latest case ID
PD-1770395216-elonhex.me
Current status
HTTP 403 at latest stored check
أمن المجال وذكاء التهديدات

elonhex[.]me

فحص التصيد والأمان للنطاق elonhex.me

“Elonhex: Most Popular Online Crypto Casino Based on Blockchain”

حكم التهديد حرجة 94/100 درجة الأدلة
التوفر يمكن الوصول إليها · الوصول مقيد استجابة يمكن الوصول إليها؛ لم يتم التحقق من محتوى الصفحة
إشارات الخطر
اكتشافات VirusTotal: 13/95 انتحال العلامة التجارية: Genericcrypto آخر نشاط معروف
13/95 VT 15/11/2025 غير متاح منذ 06/06/2026 Genericcrypto احتيال على المقامرين Crypto Scam 11 Reports Sent CDN
ملخص التقرير

elonhex.me — يمكن الوصول إليها · الوصول مقيد (HTTP 403). انتحال العلامة التجارية: Genericcrypto; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 13/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 94/100. مسجّل النطاق: Key-Systems.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

Evidence Analysis

Stored analysis · 23/07/2026 Ref 97019C93

Analysis of the domain elonhex.me shows a coordinated crypto‑focused phishing operation that was taken offline prior to this assessment. The domain was registered on October 30, 2025 through Key‑Systems GmbH, and its DNS resolves to 188.114.97.3, an address owned by AS13335 Cloudflare, Inc. in the United States. Both authoritative nameservers, adi.ns.cloudflare.com and noah.ns.cloudflare.com, belong to Cloudflare, indicating that the site leveraged the provider’s edge network for anonymity and rapid content delivery. The TLS certificate presented by the site was issued by Google Trust Services under the WE1 root, confirming the use of a legitimate certificate chain despite the malicious intent.

An HTTP request to the host returned a 403 status code, suggesting that the site was deliberately configured to deny access or that it was already removed from service at the time of testing. The page title captured during the brief scan read "Elonhex: Most Popular Online Crypto Casino Based on Blockchain," which aligns with the intelligence classification of a crypto scam and the identified phishing kit labeled as a "Gambler Scam." VirusTotal analysis recorded 13 detections out of 95 scanning engines, reflecting a moderate consensus among security vendors that the domain is malicious. Additional reputation data shows a Gridinsoft trust score of 1 / 100 and inclusion on a single security blocklist, specifically flagged by PhishDestroy.

The combined evidence—registrar details, Cloudflare infrastructure, low trust score, phishing kit attribution, and multiple vendor detections—supports a high confidence rating that elonhex.me was used to lure victims into a fraudulent crypto casino scheme.

VirusTotal
VirusTotal
13 det.
Gridinsoft
1/100
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -75d
العمر
9 mo
الحالة المرصودة
يمكن الوصول إليها · الوصول مقيد 403
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
11
نطاق تغطية البيانات13 recorded checks
VirusTotal 13 / 95 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 9 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Gridinsoft 1/100
مؤشرات الأمان
GS Gridinsoft Analysis 1 / 100
Hosting SSL Certificate Scam - High Risk 18+ Cryptocurrency Cryptocurrency - Risk Registration Form Casino

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
26/27
Initial Abuse Report (#1)
Sent to 1 abuse contact at Key-Systems GmbH with forensic evidence
abuse@key-systems.net
06/02/2026
Follow-up Report #2
Escalation #2 sent to 1 recipient — follow-up record after a previous report
abuse@key-systems.net
08/02/2026
ICANN Escalation #3
Escalation #3 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
03/03/2026
ICANN Escalation #4
Escalation #4 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
04/03/2026
ICANN Escalation #5
Escalation #5 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
06/03/2026
ICANN Escalation #6
Escalation #6 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
12/03/2026
ICANN Escalation #7
Escalation #7 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
26/03/2026
ICANN Escalation #8
Escalation #8 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
18/04/2026
ICANN Escalation #9
Escalation #9 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
20/04/2026
ICANN Escalation #10
Escalation #10 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
05/05/2026
ICANN Escalation #11
Escalation #11 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
07/05/2026
11 Reports Filed
11 report records were stored over 183 days; current observed status: يمكن الوصول إليها · الوصول مقيد

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing report ↗
الخادم / ASN cloudflare · AS13335 CLOUDFLARENET, US
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مسجّل النطاق Key-Systems DE(DE)
جهة الإبلاغ عن إساءة الاستخدامabuse@key-systems.net, abuse@cloudflare.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ elonhex.me →
عنوان IP 188.114.97.3 CDN
الموقع الجغرافيUS San Francisco, US
الشبكةAS13335 · Cloudflare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التسجيلتم إنشاؤه 30/10/2025 (282d) Expires 30/10/2026
حالة HTTP403 Forbidden
Elapsed Since First Report 24 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: يمكن الوصول إليها · الوصول مقيد.
Minimum notice count 11 is the number of stored outgoing report records for this domain. It does not by itself prove acknowledgement or action by a recipient.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
ICANN RAA §3.18 The history below lists stored escalation records and timestamps. It does not by itself establish receipt, acknowledgement, compliance, or enforcement by any recipient.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف15/11/2025
DOM Analysisanalyzed 28/07/2026score 0/100
IoC Extractionscanned 02/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://elonhex.me/
خوادم الأسماءadi.ns.cloudflare.comnoah.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 25/02/2026scanned 11/03/2026
Favicon Hash
Case ID
عنوان الصفحة
Elonhex: Most Popular Online Crypto Casino Based on Blockchain
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Google Trust Services / WE1
سجل بلاغات إساءة الاستخدام · 11 stored reports over 90 days · click to expand
This timeline is built from stored outgoing report records. It documents timestamps and listed recipients, but does not by itself prove delivery, acknowledgement, or recipient action.
11 abuse reports filed over 183 days — latest observed status: يمكن الوصول إليها · الوصول مقيد
The records name Key-Systems GmbH as a recipient or subject. ICANN Compliance appears in the recipient field for at least one record.
11
reports
183
days
ICANN CC
  1. Report #1 Feb 6, 2026 · 16:28 UTC
    Phishing Abuse Report: elonhex[.]me
    abuse@key-systems.net
  2. Report #2 Escalation 49h still active Feb 8, 2026 · 18:23 UTC
    ESCALATION #2 (49h active): Phishing - elonhex[.]me
    abuse@key-systems.net
  3. Report #3 ICANN CC 586h still active Mar 3, 2026 · 02:44 UTC
    ESCALATION #3 (586h active): Phishing - elonhex[.]me
    abuse@domain.me compliance@icann.org
  4. Report #4 ICANN CC 622h still active Mar 4, 2026 · 15:05 UTC
    ESCALATION #4 (622h active): Phishing - elonhex[.]me
    abuse@domain.me compliance@icann.org
  5. Report #5 ICANN CC 666h still active Mar 6, 2026 · 10:41 UTC
    ESCALATION #5 (666h active): Phishing - elonhex[.]me
    abuse@domain.me compliance@icann.org
  6. Report #6 ICANN CC 813h still active Mar 12, 2026 · 14:01 UTC
    ESCALATION #6 (813h active): Phishing - elonhex[.]me
    abuse@domain.me compliance@icann.org
  7. Report #7 ICANN CC 1148h still active Mar 26, 2026 · 16:12 UTC
    ESCALATION #7 (1148h active): Phishing - elonhex[.]me
    abuse@domain.me compliance@icann.org
  8. Report #8 ICANN CC 1703h still active Apr 18, 2026 · 18:52 UTC
    ESCALATION #8 (1703h active): Phishing - elonhex[.]me
    abuse@domain.me compliance@icann.org
  9. Report #9 ICANN CC 1747h still active Apr 20, 2026 · 14:44 UTC
    ESCALATION #9 (1747h active): Phishing - elonhex[.]me
    abuse@domain.me compliance@icann.org
  10. Report #10 ICANN CC 2102h still active May 5, 2026 · 09:39 UTC
    ESCALATION #10 (2102h active): Phishing - elonhex[.]me
    abuse@domain.me compliance@icann.org
  11. Report #11 ICANN CC 2142h still active May 7, 2026 · 01:51 UTC
    ESCALATION #11 (2142h active): Phishing - elonhex[.]me
    abuse@domain.me compliance@icann.org
Record scope: the timeline documents outgoing records stored by PhishDestroy. Delivery, acknowledgement, and subsequent action require separate recipient or infrastructure evidence.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

13 / قام موردو الأمان 95 بوضع علامة على هذا المجال
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
كاسبرسكي
Lionic
Seclookup
سوفوس
VIPRE

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك
تضمين هذا التقريرRead-only HTML widget
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/elonhex.me"
  title="PhishDestroy threat report for elonhex.me"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>