Notification and current-status evidence
The sent-report ledger records the first outgoing report at . It contains 3 outgoing records; the latest is dated . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
luckyboost[.]me
“Luckyboost: Most Popular Online Crypto Casino Based on Blockchain”
Сводка доказательств
Analysis of luckyboost.me on 23 July 2026 shows a high‑risk crypto‑scam operation. The domain resolves to 172.67.180.53, an address owned by AS13335 Cloudflare, Inc. in the United States. DNS is served by jean.ns.cloudflare.com and dilbert.ns.cloudflare.com, confirming Cloudflare as the hosting provider. The site presents a valid TLS certificate issued by Google Trust Services under the WE1 intermediate, indicating proper HTTPS configuration despite malicious intent. The page title “Luckyboost: Most Popular Online Crypto Casino Based on Blockchain” aligns with the listed scam type “Crypto Scam”.
The infrastructure matches a known “Gambler Scam” phishing kit, suggesting the site is used to lure victims into a fraudulent cryptocurrency casino. Gridinsoft assigns a trust score of 0/100, and the domain is currently blocked by PhishDestroy and listed on one additional security blocklist. VirusTotal analysis shows 12 of 93 scanning engines flag the domain as malicious, reinforcing the risk assessment. Registrar information shows registration through Porkbun LLC, a common registrar for short‑lived malicious domains. HTTP response code 200 indicates the site is actively serving content.
No additional evidence such as specific phishing pages or credential harvesting forms is available in the supplied data, so the exact user‑interaction flow remains unknown. Defenders should block luckyboost.me at network perimeter and DNS layers, monitor for outbound connections to 172.67.180.53, and add the domain to internal URL filtering lists. Threat‑intel feeds should be updated to include the observed nameservers and the Google Trust Services certificate fingerprint when available. Continuous re‑scanning of the domain on VirusTotal and other sandboxes is recommended to capture any future payload changes.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-1771100863-luckyboost.me- PDF-файл
- PDF с доказательствами
История сообщений 3
- Сообщение № 1 ⚠️ ESCALATION #2 (145h active): Phishing - luckyboost[.]me
- Сообщение № 2 ⚠️ ESCALATION #3 (148h active): Phishing - luckyboost[.]me
- Сообщение № 3 ⚠️ ESCALATION #4 (616h active): Phishing - luckyboost[.]me
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание