VirusTotal
13 / 95
“Betluck777: Most Popular Online Crypto Casino Based on Blockchain”
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | betluck777.online |
malicious | Sinkholed |
| Quad9 DNS | betluck777.online |
malicious | Sinkholed |
This domain, betluck777.online, poses a brand impersonation threat specifically targeting users of cryptocurrency-based gambling platforms. Analysis of the page title, 'Betluck777: Most Popular Online Crypto Casino Based on Blockchain,' indicates an attempt to deceive visitors into believing they are accessing a legitimate crypto casino. The fraudulent site likely aims to harvest credentials, manipulate transactions, or distribute malicious payloads under the guise of a trusted gambling service. The risk is elevated due to the domain's focus on financial and cryptocurrency interactions, which could lead to direct monetary loss or compromise of sensitive user data. Infrastructure analysis reveals multiple indicators of malicious activity. The domain was registered on December 26, 2025, through HOSTINGER operations, UAB, and currently resolves to the IP address 104.21.52.36, associated with AS13335 Cloudflare, Inc. Security vendors have flagged the domain in 11 out of 95 detections on VirusTotal, while it appears on at least one security blocklist. The SSL certificate, identified as WE1, does not mitigate the risk, as fraudulent domains frequently employ valid certificates to appear legitimate. Additionally, the domain has been taken offline, suggesting either remediation efforts or evasion of detection. Users who visited betluck777.online should take immediate action to mitigate potential risks. If credentials were entered, all associated passwords must be changed, and multi-factor authentication should be enabled where available. Any cryptocurrency wallets or financial accounts linked to the site should be reviewed for unauthorized transactions, and affected users are advised to monitor for signs of compromise. Browser data, including cookies and cached files, should be cleared to eliminate residual tracking mechanisms. Given the domain's focus on crypto gambling, users should also verify the legitimacy of any transactions or communications originating from similar platforms.
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
Scanner note: unavailable: raw=connection_error; http=0; via=http_proxy; error=SOCKSHTTPConnectionPool(host='betluck777.online', port=80): Max retries exceeded with url: / (Caused by NewConnectionErr
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Edge-IP reputation is not attributed to this domain.
Location describes the IP network.
Saved certificate metadata. Certificate dates without a timezone are shown as stored. Transport encryption does not establish that the site is trustworthy.
11 recorded events. These records describe collected evidence, outgoing notifications and publication; they do not confirm a complete investigation or a takedown.
We scan suspicious URLs, inspect public results and send evidence through the appropriate abuse-reporting channels. The dated events above show what is recorded for this domain. The directory below explains the wider workflow.
Capture the rendered page, requests and visible infrastructure.
Compare the available engine results and retain the analysis timestamp.
Check whether Google currently lists the URL as unsafe.
Inspect a public scan and its recorded network and classification data.
Look for indicator references and related community intelligence.
Compare archived captures and preserve historical context.
Look for matching indicators and associated threat records.
Inspect certificate records and related hostnames.
Compare security resolver responses and record observed blocking.
Inspect the public DNS, TLS, HTTP and technology surface.
Security services used for scanning, reputation checks and reporting are listed below. A service being listed is not evidence that it received, accepted or acted on this particular domain. Recorded submissions appear in the notification history above.
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Select your country to get official cybercrime contacts, or create a complaint draft →.
Template-based draft · optional AI wording assistance requires separate consent
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowSubmit suspicious domains to our threat database — protect the community
ReportRecent phishing reports and observed availability changes
MonitorMonitor live threats or contest this listing if you believe it's a false positive