poxcas[.]com
“Poxcas: Most Popular Online Crypto Casino Based on Blockchain”
Resumo das evidências
Analysis of the domain poxcas.com, as of the report date July 23, 2026, indicates that it is an active component of a generic phishing campaign targeting cryptocurrency users. The site is listed on a single security blocklist and is explicitly blocked by PhishDestroy, confirming prior intelligence that the domain is being used for malicious purposes. The page title retrieved from the live host reads "Poxcas: Most Popular Online Crypto Casino Based on Blockchain," which aligns with the classified scam type of a crypto scam. The infrastructure is hosted on Cloudflare, ASN 13335, with the IPv6 address 2606:4700:3033::6815:38a6 located in the United States.
Registration details show the domain was registered through MAT BAO CORPORATION, but no SSL certificate is present, leaving the site exposed to unencrypted traffic and facilitating credential harvesting. Malware detection services on VirusTotal recorded 12 positive detections out of 93 vendors, providing additional corroboration of malicious activity. The phishing kit identified as "Gambler Scam" further suggests the campaign is leveraging a pre‑written cryptocurrency gambling template to lure victims. Gridinsoft assigns a trust score of 0 out of 100, indicating a complete lack of trustworthiness.
The domain’s current operational status is offline, which may be the result of takedown efforts or temporary suspension by the hosting provider. While the exact payload and data collection mechanisms have not been observed, the combination of blocklist presence, vendor detections, lack of TLS, and the gambler‑oriented phishing kit constitute strong evidence of a phishing operation. Defenders should add poxcas.com to network and endpoint blocklists, monitor the associated Cloudflare IP range for related activity, and consider sharing the indicator set with upstream threat intelligence platforms to improve collective detection. Continuous re‑evaluation is advised in case the domain resurfaces or similar variants appear.
Instantâneo das evidências enviadas
- Enviado
- Registros do livro-razão
- 2
- ID do caso
PD-20260106-0645BE- Título da página capturada
- Poxcas: Most Popular Online Crypto Casino Based on Blockchain
- Artefato PDF
- Evidência em PDF
Texto completo da evidência
Section 3.1 of the AUP: The domain poxcas.com is engaged in phishing activities, attempting to deceive users into providing sensitive information, which constitutes a clear violation of your Acceptable Use Policy.
Section 4.2 of the TOS: The use of this domain for fraudulent purposes violates your Terms of Service, which reserves the right to suspend or terminate services for such activities.
Applicable Laws (MY):
Computer Crimes Act 1997 - This law prohibits unauthorized access to computer systems and data, which is relevant given the phishing activities associated with poxcas.com.
Malaysian Penal Code, Section 420 - This section addresses cheating and dishonestly inducing delivery of property, which applies to the fraudulent nature of the phishing attempts.
Personal Data Protection Act 2010 - This act mandates the protection of personal data, and phishing activities directly contravene its provisions by compromising user data security.
Regulatory Note: Failure to take immediate action against the domain poxcas.com may result in legal repercussions and regulatory scrutiny. Compliance with applicable laws and your own policies is essential to mitigate potential liabilities.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | poxcas.com |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo