Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
It contains 11 outgoing records; the latest is dated . The recorded recipient is abuse@domain.me.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
elonhex[.]me
Phishing- und Sicherheitsprüfung für elonhex.me
“Elonhex: Most Popular Online Crypto Casino Based on Blockchain”
elonhex.me — Erreichbar · Zugang eingeschränkt (HTTP 403). Markenidentität: Genericcrypto; Betrugstyp: Crypto Scam. Zusammenfassung der Beweislage: VirusTotal 13/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 94/100. Registrar: Key-Systems.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Analysis of the domain elonhex.me shows a coordinated crypto‑focused phishing operation that was taken offline prior to this assessment. The domain was registered on October 30, 2025 through Key‑Systems GmbH, and its DNS resolves to 188.114.97.3, an address owned by AS13335 Cloudflare, Inc. in the United States. Both authoritative nameservers, adi.ns.cloudflare.com and noah.ns.cloudflare.com, belong to Cloudflare, indicating that the site leveraged the provider’s edge network for anonymity and rapid content delivery. The TLS certificate presented by the site was issued by Google Trust Services under the WE1 root, confirming the use of a legitimate certificate chain despite the malicious intent.
An HTTP request to the host returned a 403 status code, suggesting that the site was deliberately configured to deny access or that it was already removed from service at the time of testing. The page title captured during the brief scan read "Elonhex: Most Popular Online Crypto Casino Based on Blockchain," which aligns with the intelligence classification of a crypto scam and the identified phishing kit labeled as a "Gambler Scam." VirusTotal analysis recorded 13 detections out of 95 scanning engines, reflecting a moderate consensus among security vendors that the domain is malicious. Additional reputation data shows a Gridinsoft trust score of 1 / 100 and inclusion on a single security blocklist, specifically flagged by PhishDestroy.
The combined evidence—registrar details, Cloudflare infrastructure, low trust score, phishing kit attribution, and multiple vendor detections—supports a high confidence rating that elonhex.me was used to lure victims into a fraudulent crypto casino scheme.
Sicherheitssignale
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Verlauf der Missbrauchsmeldungen · 11 stored reports over 90 days · click to expand
-
Report #1 Feb 6, 2026 · 16:28 UTCPhishing Abuse Report: elonhex[.]meabuse@key-systems.net
-
Report #2 Escalation 49h still active Feb 8, 2026 · 18:23 UTCESCALATION #2 (49h active): Phishing - elonhex[.]meabuse@key-systems.net
-
Report #3 ICANN CC 586h still active Mar 3, 2026 · 02:44 UTCESCALATION #3 (586h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #4 ICANN CC 622h still active Mar 4, 2026 · 15:05 UTCESCALATION #4 (622h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #5 ICANN CC 666h still active Mar 6, 2026 · 10:41 UTCESCALATION #5 (666h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #6 ICANN CC 813h still active Mar 12, 2026 · 14:01 UTCESCALATION #6 (813h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #7 ICANN CC 1148h still active Mar 26, 2026 · 16:12 UTCESCALATION #7 (1148h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #8 ICANN CC 1703h still active Apr 18, 2026 · 18:52 UTCESCALATION #8 (1703h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #9 ICANN CC 1747h still active Apr 20, 2026 · 14:44 UTCESCALATION #9 (1747h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #10 ICANN CC 2102h still active May 5, 2026 · 09:39 UTCESCALATION #10 (2102h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
-
Report #11 ICANN CC 2142h still active May 7, 2026 · 01:51 UTCESCALATION #11 (2142h active): Phishing - elonhex[.]meabuse@domain.me compliance@icann.org
VirusTotal-Analyse
Archivierte Beweise
Nachweise und externe Berichte
PD-1770395216-elonhex.me Recipient: abuse@domain.me Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt