jeskcas[.]com
“Jeskcas: Most Popular Online Crypto Casino Based on Blockchain”
Сохранённое обнаружение
Обнаружена маскировка
- Тип маскировки
content_divergence- Оценка маскировки
- 1/6
Сводка доказательств
This domain, jeskcas.com, operates as a confirmed brand impersonation site designed to deceive users into engaging with a fraudulent crypto casino platform. Analysis indicates the site mimics legitimate blockchain-based gambling services, presenting itself under the page title 'Jeskcas: Most Popular Online Crypto Casino Based on Blockchain.' The primary threat involves luring victims into depositing cryptocurrency under false pretenses, with potential secondary risks including credential harvesting or malware distribution. The infrastructure is structured to exploit trust in crypto gambling brands, likely targeting users through phishing campaigns or malicious advertisements. Evidence supporting this assessment includes a VirusTotal detection rate of 19 out of 95 security vendors, indicating widespread recognition of the domain as malicious. The domain was registered on April 14, 2026, through Hello Internet Corp, a registrar frequently associated with high-risk domains. It currently resolves to the IP address 104.21.59.168, hosted by Cloudflare, Inc. in Canada, a common tactic to obscure the true origin of malicious infrastructure. Additionally, the domain appears on three security blocklists and is actively blocked by at least three independent security mechanisms, further validating its malicious intent. Users who have interacted with jeskcas.com should immediately cease all engagement and revoke any permissions granted to the site, particularly wallet connections or login credentials. All cryptocurrency transactions associated with this domain should be reviewed for unauthorized activity, and affected wallets should be monitored for signs of compromise. If credentials were entered, they must be changed across all platforms where they were reused. Security teams are advised to update blocklists with the domain and associated IP address to prevent further exposure. Given the high-risk nature of this infrastructure, organizations should treat any interaction with jeskcas.com as a potential security incident requiring investigation.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-1780429833-jeskcas.com- PDF-файл
- PDF с доказательствами
История сообщений 1
- Сообщение № 1 ⚠️ ESCALATION #1 (0h active): Phishing - jeskcas[.]com
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | jeskcas.com/api/extra/pixel |
malware | Detects file containing Telegram Bot API |
| OpenDNS | jeskcas.com |
phishing | Phishing Block |
| DNS4EU | jeskcas.com |
malicious | Sinkholed |
| Hagezi Threat Feed | jeskcas.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
8 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of jeskcas.com · checked Apr 15, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание