heidax[.]com
“Heidax: Most Popular Online Crypto Casino Based on Blockchain”
साक्ष्य सारांश
Analysis conducted on July 23, 2026 identifies heidax.com as an active component of a crypto‑casino impersonation campaign targeting the brand x.com. The domain was registered on February 21, 2026 through NiceNIC International Group Co., Limited and resolves to the IPv6 address 2606:4700:3032::ac43:acd7, which is announced by AS13335 Cloudflare, Inc. and geolocated to the United States. The authoritative name servers are cory.ns.cloudflare.com and jo.ns.cloudflare.com, indicating the use of Cloudflare’s DNS infrastructure. No TLS certificate is presented for the site, confirming the absence of HTTPS protection. Public threat intelligence attributes the site to the “Gambler Scam” phishing kit, a known template that advertises a cryptocurrency casino.
The page title returned by the server reads “Heidax: Most Popular Online Crypto Casino Based on Blockchain”, reinforcing the claim that the operator is attempting to lure victims with a fabricated gambling service. The brand target is explicitly listed as x.com, establishing the impersonation vector. Reputation scoring from Gridinsoft assigns a trust score of 1 out of 100, reflecting an extremely low confidence in the legitimacy of the domain. The site is presently taken offline, as indicated by the status flag, and has been added to the blocklist maintained by PhishDestroy. VirusTotal analysis shows that fifteen of ninety‑three scanning engines flagged the domain, and the domain appears on one additional security blocklist, providing independent confirmation of malicious intent.
Given the combination of a brand‑specific impersonation, the use of a known gambling‑scam kit, low trust rating, multiple vendor detections, and the lack of TLS, defenders should enforce immediate DNS or proxy level blocking of heidax.com and its associated IPv6 address. Monitoring of the Cloudflare name servers for any re‑registration of similar domains is advised, as threat actors frequently recycle infrastructure.
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-1769890280-heidax.com- PDF दस्तावेज़
- PDF प्रमाण
Data Coverage
सुरक्षा संकेत
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
उपलब्धता
पहला संग्रहीत मान: DNS निष्क्रिय
f93a11f87e4d -
उपलब्धता
DNS निष्क्रिय → अज्ञात
1f93aa5b3550 -
उपलब्धता
अज्ञात → निष्क्रिय
5297dd77696f -
उपलब्धता
निष्क्रिय → DNS निष्क्रिय
a62a6697dd77 -
उपलब्धता
DNS निष्क्रिय → होल्ड पर
4ec0d6b621bd -
उपलब्धता
होल्ड पर → DNS निष्क्रिय
f52d526b76a1 -
उपलब्धता
DNS निष्क्रिय → अज्ञात
a9be4a25f631 -
उपलब्धता
अज्ञात → होल्ड पर
e8b9993fa968 -
उपलब्धता
होल्ड पर → अज्ञात
538648a9ad3e
सभी दिखाएँ (8)
-
उपलब्धता
अज्ञात → DNS निष्क्रिय
6dfe9145995c -
उपलब्धता
DNS निष्क्रिय → होल्ड पर
8f823264b0f2 -
उपलब्धता
होल्ड पर → DNS निष्क्रिय
641ed81dc4d5 -
उपलब्धता
DNS निष्क्रिय → अज्ञात
4d1b556d14db -
उपलब्धता
अज्ञात → होल्ड पर
b7513d814f0b -
उपलब्धता
होल्ड पर → अज्ञात
9e5973ba1571 -
उपलब्धता
अज्ञात → DNS निष्क्रिय
d0b7046e8c2f -
उपलब्धता
DNS निष्क्रिय → होल्ड पर
7d0b862b4ea6
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।