grokcas[.]com
“Grokcas: Most Popular Online Crypto Casino Based on Blockchain”
साक्ष्य सारांश
grokcas.com was observed hosting a fraudulent cryptocurrency casino front that claims to be the “Most Popular Online Crypto Casino Based on Blockchain.” The site was registered on 17 November 2025 through MAT BAO CORPORATION and uses Cloudflare nameservers cheryl.ns.cloudflare.com and jihoon.ns.cloudflare.com. DNS resolution points to 188.114.97.3, an address owned by Cloudflare, Inc. (AS13335) located in the United States. No TLS certificate is presented, indicating the site was served over plain HTTP. The page title retrieved from the live host matches the advertised claim and aligns with the “Gambler Scam” phishing kit identified in the intelligence feed.
Static analysis shows that 15 of 93 VirusTotal scanners flag the domain as malicious, and the site is listed on a single security blocklist. The Gridinsoft trust score of 1/100 further confirms a highly suspicious reputation. PhishDestroy has already taken the domain offline, and current status is reported as taken offline. The domain appears on one external blocklist, but no additional threat‑intel sources (OTX, Safe Browsing) are referenced in the provided data.
Given the combination of a newly created domain, lack of encryption, low trust score, and detection by multiple AV engines, the infrastructure is consistent with a crypto‑focused phishing operation that aims to lure victims into depositing cryptocurrency under the pretense of a legitimate casino. Defenders should block DNS resolution for grokcas.com, add the IP address 188.114.97.3 to network‑level deny lists, and ensure that any outbound traffic to this host is denied. Monitoring for similar domains that use the same registrar, nameservers, or the “Gambler Scam” kit is recommended. Because the site is already offline, incident response can focus on gathering any residual artifacts from endpoint logs and confirming that no successful credential or fund transfers have occurred.
Data Coverage
सुरक्षा संकेत
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।