MALICIOUS — CRITICAL
vexgamb[.]com
Analysis of vexgamb.com confirms its classification as a fraudulent crypto casino scam, operational since February 26, 2026.
- VirusTotal
- 1 detections
- Blocklists
- 2 · MetaMask, SEAL
- Disponibilità
- Contenuto non disponibile · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
vexgamb.com — Contenuto non disponibile (HTTP 502). Simulazione del marchio: Across; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 1 detections (engine total unavailable) (Gridinsoft); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 71/100. Registrar: CNOBIN INFORMATION TEC….
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
vexgamb.com: Confirmed Crypto Casino Scam Site
Analysis of vexgamb.com confirms its classification as a fraudulent crypto casino scam, operational since February 26, 2026.
Analysis of vexgamb.com confirms its classification as a fraudulent crypto casino scam, operational since February 26, 2026. The domain is registered through CNOBIN INFORMATION TECHNOLOGY LIMITED and resolves to IP 172.67.158.44, hosted on Cloudflare's infrastructure (AS13335). Nameservers kinsley.ns.cloudflare.com and olof.ns.cloudflare.com further link it to Cloudflare's network, a common choice for threat actors seeking anonymity and DDoS protection. The site's page title, 'Vexgamb: Most Popular Online Crypto Casino Based on Blockchain,' explicitly positions it as a gambling platform, aligning with the 'Gambler Scam' phishing kit classification in available intelligence.
Gridinsoft assigns vexgamb.com a trust score of 1/100, indicating near-certain malicious activity. The domain appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL, which specifically target phishing and fraudulent financial schemes. A Let's Encrypt SSL certificate (serial E8) is present, providing HTTPS encryption but offering no assurance of legitimacy, as free certificates are routinely abused by malicious actors. As of July 25, 2026, the domain has been taken offline, though its infrastructure remains registered and could be reactivated.
While one security vendor on VirusTotal flags the domain, the absence of broader detection does not imply safety; many scam domains evade initial scans or are only flagged after victim reports. The use of Cloudflare nameservers and hosting is consistent with observed patterns in crypto-related scams, where threat actors leverage CDN services to obscure origin servers and complicate takedown efforts. Defenders should treat this domain as confirmed malicious, block all resolutions to 172.67.158.44, and monitor for related infrastructure re-emerging under new domains or IPs. No legitimate association with blockchain gambling platforms has been established, and the site's content remains unverified beyond its stated page title.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Copertura dei dati13 recorded checks
Indicatori di sicurezza
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | vexgamb.com |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterneIndependent lookups and source reports
PD-20260226-2BB5B9 Recipient: abuse@ordertld.com Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.