MALICIOUS — CRITICAL
muocux[.]com
The domain muocux.com has been identified as a brand impersonation threat, specifically targeting Base users under the guise of a legitimate crypto casino platform.
- VirusTotal
- 5/92
- Blocklists
- 2 · MetaMask, SEAL
- Доступность
- Последний известный активный · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
muocux.com — Последний известный активный (HTTP 200). Тип мошенничества: Gambling. Сводка доказательств: VirusTotal 5/92 (ADMINUSLabs, alphaMountain.ai, Gridinsoft, Kaspersky, Netcraft); Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. Регистратор: Fewmoretaps OU d/b/a T….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
The domain muocux.com has been identified as a brand impersonation threat, specifically targeting Base users under the guise of a legitimate crypto casino platform. This site, with the page title "Muocux: Most Popular Online Crypto Casino Based on Blockchain," was designed to trick visitors into connecting their wallets and ultimately drain their cryptocurrency assets. PhishDestroy categorizes this as a brand impersonation scam with elevated risk, leveraging the trust associated with the Base brand to deceive victims.
Technical analysis reveals several red flags. The domain was created on May 19, 2026, and is registered through Fewmoretaps OU d/b/a Trustname.com, a registrar often associated with malicious domains. It is secured with a Let's Encrypt SSL certificate (E8), which provides a false sense of legitimacy. VirusTotal data shows that 5 out of 95 security vendors flagged the domain as malicious, and it appears on three security blocklists. The domain resolves to IP address 172.67.134.146, and AlienVault OTX has recorded it in one threat intelligence pulse, indicating active monitoring by the security community.
Currently, the site has been taken offline, which mitigates immediate risk but does not eliminate the threat. The domain may be reactivated under a different IP or reused for future campaigns. PhishDestroy advises users to remain vigilant and always verify the authenticity of crypto-related sites using trusted platforms. Avoid connecting wallets or entering personal information on unverified domains, and report any suspicious activity to security teams. For further verification, users can check the domain's status on PhishDestroy's platform.
Охват данных12 recorded checks
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Анализ VirusTotal
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.