elmurex[.]com
“Elmurex: Most Popular Online Crypto Casino Based on Blockchain”
Evidence Summary
Elmurex.com is a domain that poses a brand impersonation threat specifically targeting the Crypto Casino / Gambling sector, with an elevated risk level. It was taken offline after being flagged as a suspicious entity. The domain mimics a legitimate online crypto casino, likely aiming to deceive users into depositing funds or sharing sensitive information under false pretenses.
Technical analysis reveals that the domain was registered on December 18, 2025, through Metaregistrar BV and resolves to IP address 104.21.34.69. It appears on at least one security blocklist, and a scan on VirusTotal shows that 14 out of 95 security vendors flag this domain as malicious. Notably, the SSL certificate is absent, which is unusual for any legitimate casino site that processes financial transactions, further indicating fraudulent intent.
Given that the domain is currently offline, the immediate threat is mitigated, but users should remain cautious if it reappears. PhishDestroy recommends that anyone who may have interacted with Elmurex.com monitor their accounts for unauthorized activity and avoid engaging with unsolicited gambling platforms that lack proper security credentials. If the domain returns, it should be reported to relevant authorities and blocked at the network level.
Submitted Evidence Snapshot
- Sent
- Ledger records
- 1
- Case ID
PD-20260218-3B16B4- Captured page title
- Elmurex: Most Popular Online Crypto Casino Based on Blockchain
- PDF artifact
- PDF evidence
Full evidence text
Acceptable Use Policy (AUP): The domain elmurex.com is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The use of elmurex.com for fraudulent purposes violates your TOS, which reserves the right to suspend or terminate services for any activities that contravene your established policies.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which includes phishing schemes aimed at obtaining sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities through electronic communications, directly applicable to phishing activities.
CAN-SPAM Act (15 U.S.C. § 7701): This act regulates commercial email and prohibits deceptive practices in electronic communications, which is relevant to phishing operations.
Regulatory Note: Failure to take immediate action against elmurex.com may expose your organization to legal liability and regulatory scrutiny. Compliance with your AUP and TOS is critical to maintaining your standing as a responsible hosting provider.
Data Coverage
Security Signals
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | elmurex.com/api/extra/pixel |
malware | Detects file containing Telegram Bot API |
| Hagezi Threat Feed | elmurex.com |
malicious | Sinkholed |
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 13, 2026
10 monitored external feeds No match
Detection timeline
-
Cloudflare Radar
Cloudflare Radar scan stored · Open scan
Stored Capture
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive