qxcas[.]com
qxcas.com 피싱 및 보안 점검
“Qxcas: Most Popular Online Crypto Casino Based on Blockchain”
qxcas.com — 콘텐츠를 사용할 수 없음 (HTTP 502). 브랜드 사칭: Genericcrypto; 사기 유형: Crypto Scam. 증거 요약: VT 15/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 100 det.; URLScan malicious; GSB no flag; BL 0; PD 95/100. 등록기관: Dominet (HK).
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
qxcas.com was observed hosting a cryptocurrency casino front‑end that presents itself as a “Most Popular Online Crypto Casino Based on Blockchain”. The site was registered on 21 February 2026 through Dominet (HK) Limited and resolves to the Cloudflare address 188.114.97.3, which belongs to AS13335 Cloudflare, Inc. in the United States. Both authoritative name servers, lewis.ns.cloudflare.com and zelda.ns.cloudflare.com, are Cloudflare‑managed, indicating the infrastructure is fully proxied behind a CDN. The TLS certificate presented by the site is issued by Google Trust Services under the WE1 intermediate, confirming a valid HTTPS endpoint at the time of capture. VirusTotal records show that 15 of 95 scanning engines flagged the domain as malicious, and the domain is listed on a single external blocklist.
PhishDestroy has also added qxcas.com to its phishing blocklist. The malicious activity is categorized as a Crypto Scam and the underlying phishing kit has been identified as a Gambler Scam template, which is commonly used to lure victims into depositing cryptocurrency under false pretenses. At the time of analysis the HTTP response returned no body, so the exact landing page content could not be captured; consequently the full scope of credential‑stealing forms cannot be confirmed. The current operational status is reported as offline, which suggests the hosting has been taken down or the site is no longer serving content. However, the persistence of the domain registration, the Cloudflare IP, and the previously observed kit indicate that the threat actor could reactivate the site or clone the content to a new address.
It remains unclear whether the domain will be repurposed for other phishing campaigns, but the reuse of the Gambler Scam kit in past operations suggests a high likelihood of reappearance. Defenders should continue to monitor DNS resolution for qxcas.
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
ICANN은 돈을 받았다. 책임은 끝내 오지 않았다.
이 gTLD에서 위 등록기관은 ICANN과의 계약에 따라 운영됩니다. ICANN은 등록, 갱신 및 이전과 연계된 연간 수수료, 변동 수수료 및 거래 기반 수수료를 징수합니다.
인증: 수익화 완료. 책임: 나중에 다시 확인하십시오.
그러고 나면 마법이 시작됩니다. ICANN은 RAA §3.18을 작성하고, 등록기관은 자기 고객 기반 안의 악용을 스스로 조사하며, 피해자는 증거를 공짜로 제공하는 동안 모든 단계는 다른 누군가가 움직이기만을 기다립니다. 그 덕분에 피해자가 더 안전하다고 느낀다면 훌륭합니다—청구서가 제 몫을 한 셈이니까요.
악용 신고 이력 · 4 stored reports over 26 days · click to expand
-
Report #1 Feb 8, 2026 · 18:32 UTCPhishing Abuse Report: qxcas[.]comdomainabuse@service.aliyun.com
-
Report #2 ICANN CC 535h still active Mar 3, 2026 · 01:46 UTCESCALATION #2 (535h active): Phishing - qxcas[.]comdomainabuse@service.aliyun.com abuse@verisign-grs.com compliance@icann.org
-
Report #3 ICANN CC 573h still active Mar 4, 2026 · 15:45 UTCESCALATION #3 (573h active): Phishing - qxcas[.]comdomainabuse@service.aliyun.com abuse@verisign-grs.com compliance@icann.org
-
Report #4 ICANN CC 616h still active Mar 6, 2026 · 10:59 UTCESCALATION #4 (616h active): Phishing - qxcas[.]comdomainabuse@service.aliyun.com abuse@verisign-grs.com compliance@icann.org
VirusTotal 분석
보관된 증거
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.
이 보고서 정보: qxcas.com
이 보고서는 PhishDestroy에서 사용할 수 있는 최신 저장된 증거를 제공합니다. 가능한 경우 소스 타임스탬프가 표시됩니다. 가용성 및 공급업체 평가는 수집 후 변경될 수 있습니다.
캡처된 사이트는 페이지 제목 “Qxcas: Most Popular Online Crypto Casino Based on Blockchain”를 표시했으며 Genericcrypto를 사칭했을 수 있습니다.
2026년 8월 7일부터 qxcas.com는 15 보안 엔진에서 탐지되었습니다.
이 목록이 정확하지 않다고 생각되면 항소를 제출하다. 당사의 방법론에 대해 알아보려면 FAQ 페이지를 방문하세요.