Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
It contains 11 outgoing records; the latest is dated . The recorded recipient is abuse@nic.at.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
emcas[.]at
“Emcas: Elon Musk’s Official Crypto Casino Powered by Blockchain”
emcas.at — Não verificado. Representação da marca: Genericcrypto; Tipo de golpe: Crypto Scam. Resumo das evidências: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 100 det.; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 100/100. Registrador: TLD Registry (.at).
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain emcas.at has been identified as a brand impersonation threat, specifically targeting the Crypto Casino / Gambling industry. This domain is designed to deceive users into believing they are accessing an official crypto casino platform endorsed by Elon Musk. The impersonation is evident from the page title: 'Emcas: Elon Musk’s Official Crypto Casino Powered by Blockchain'.
Analysis indicates that emcas.at has been flagged by 19 out of 95 security vendors on VirusTotal, suggesting a significant level of suspicion among security tools. The domain is registered through TLD Registry (.at) and resolves to the IP address 188.114.96.3, which is located in the United States and is associated with Cloudflare, Inc. (AS13335). The exact creation date is not provided, but the domain appears on one security blocklist, further corroborating its malicious nature. The SSL certificate is issued by Google Trust Services under the WE1 label, which might be used to gain user trust.
Currently, the domain emcas.at is offline, having been taken down. However, it remains listed on the PhishDestroy blocklist, indicating that it was previously active and potentially harmful. Despite the domain's current offline status, it is advisable for security teams to monitor any reactivation attempts and update their blocklists accordingly. The elevated risk level underscores the need for continued vigilance, as the infrastructure used for this domain (Cloudflare and Google Trust Services) could be leveraged for future attacks.
Sinais de segurança
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Histórico de denúncias de abuso · 11 stored reports over 73 days · click to expand
-
Report #1 ICANN CC 151h still active Feb 15, 2026 · 01:23 UTCESCALATION #2 (151h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
-
Report #2 ICANN CC 573h still active Mar 4, 2026 · 15:54 UTCESCALATION #3 (573h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
-
Report #3 ICANN CC 616h still active Mar 6, 2026 · 10:41 UTCESCALATION #4 (616h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
-
Report #5 ICANN CC 1100h still active Mar 26, 2026 · 18:21 UTCESCALATION #5 (1100h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
-
Report #6 ICANN CC 1172h still active Mar 29, 2026 · 17:57 UTCESCALATION #6 (1172h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
-
Report #7 ICANN CC 1429h still active Apr 9, 2026 · 10:56 UTCESCALATION #7 (1429h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
-
Report #8 ICANN CC 1618h still active Apr 17, 2026 · 08:11 UTCESCALATION #8 (1618h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
-
Report #9 ICANN CC 1752h still active Apr 22, 2026 · 22:06 UTCESCALATION #9 (1752h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
-
Report #10 ICANN CC 1798h still active Apr 24, 2026 · 20:05 UTCESCALATION #10 (1798h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
-
Report #11 ICANN CC 1843h still active Apr 26, 2026 · 17:13 UTCESCALATION #11 (1843h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
-
Report #12 ICANN CC 1892h still active Apr 28, 2026 · 18:10 UTCESCALATION #12 (1892h active): Phishing - emcas[.]atabuse@nic.at compliance@icann.org
Análise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of emcas.at · checked Mar 1, 2026
Evidências e relatórios externos
“The website emcas.at is a fraudulent crypto-gambling platform operating an 'Advance-Fee Scam' (419 scam). The site lures users with fake balances (e.g., $3,405.20) and then demands an upfront deposit of $25 or more in Bitcoin (wallet: bc1q8hfcwes970y6mlqpwhng40w5e0qlckd) to 'unlock' or 'verify' the account for withdrawal. The platform uses stolen corporate credentials (impersonating TechSolutions Group N.V.) and lacks any valid gaming license. When challenged with legal inquiries, the support te”
PD-1771118593-emcas.at Recipient: abuse@nic.at Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo