casino[.]vuahox[.]com
The domain casino.vuahox.com was registered on July 23, 2026 through Fewmoretaps OU doing business as Trustname.com. Its DNS resolves to the IPv4 address 64.7.198.11, an address that currently appears on a single security blocklist. The domain has been flagged by the PhishDestroy blocking service, indicating that it is actively used in a phishing campaign targeting users who may be enticed by casino‑related offers. VirusTotal analysis shows that 13 of 91 scanned security vendors flagged the domain as malicious, providing additional corroboration of its malicious intent.
The specific detection signatures were not disclosed, but the consensus among a minority of scanners suggests the presence of phishing‑related payloads or infrastructure. No public Safe Browsing entry, Open Threat Exchange (OTX) indicator, or SSL certificate information is available in the current intelligence set, and the site’s HTTP response code, page title, or content have not been captured. Consequently, the precise phishing vector—whether it mimics a gambling platform login, a payment gateway, or another service—remains unknown. Defenders should block DNS resolution to 64.7.198.11 for any internal clients and add casino.vuahox.com to web‑filter and email‑gateway blocklists.
Continuous monitoring of the IP address for additional malicious activity is advised, as well as periodic re‑scanning with VirusTotal or similar multi‑engine services to detect any changes in detection rates. Given the recent registration date and the early detection by multiple security vendors, the risk posture of this domain is elevated. Organizations should treat any unsolicited communications referencing casino.vuahox.com as potentially malicious and educate users to avoid clicking links or providing credentials.
Network Security Intelligence Registrar context
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Registration: vuahox.com
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For the registrable domain vuahox.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Threat Intel Cross-Reference · source references
Casino / Gambling License Verification
VirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of casino.vuahox.com · checked Aug 7, 2026
Evidence & External Reports
“Report of Suspected Cryptocurrency Withdrawal Scam Involving play.vuahox.com I believe I was the victim of a cryptocurrency withdrawal scam involving the website https://play.vuahox.com. I originally found the website through what appeared to be a promotional social media post using MrBeast’s name and branding, advertising a $2,500 cryptocurrency bonus for new users. The promotion directed users to visit vuahox.com and enter a promotional code to claim the bonus. I have retained a screensh”
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive