coraslots[.]net
“Coraslots: Most Popular Online Crypto Casino Based on Blockchain”
Kanıt özeti
Analysis of coraslots.net, created on 21 February 2026 and currently taken offline, shows multiple indicators of malicious activity targeting cryptocurrency users. The domain resolves to IP address 188.114.96.3, which is owned by Cloudflare, Inc. (AS13335) and located in the United States. Both authoritative name servers are Cloudflare hosts (gina.ns.cloudflare.com and tate.ns.cloudflare.com), confirming the use of a reputable CDN for anonymity and rapid deployment. No TLS certificate is presented, indicating the site operated without HTTPS encryption, a common trait of low‑effort phishing deployments.
The page title advertised "Coraslots: Most Popular Online Crypto Casino Based on Blockchain," and the observed scam type is classified as a crypto scam, consistent with the "Gambler Scam" phishing kit identified in related intelligence. Reputation services rate the domain poorly, with Scamadviser assigning an 11 out of 100 trust score. VirusTotal scans flagged the domain on 16 of 93 security engines, and the site is listed on at least one public blocklist, having been actively blocked by PhishDestroy. Registration was performed through NiceNIC International Group Co., Limited, a registrar known to host transient malicious domains.
While the site is presently offline, the infrastructure details—Cloudflare front‑end, lack of SSL, and the specific gambling‑oriented phishing kit—suggest a focused campaign aimed at extracting cryptocurrency credentials or payments from unsuspecting victims. Defenders should continue to monitor the IP address for re‑use, enforce blocklist updates that include coraslots.net, and consider broader heuristic rules that flag similar gambling‑related crypto language in URLs or page titles. Additional verification, such as checking for any residual DNS records or associated subdomains, would help confirm whether the threat actor has pivoted to new infrastructure.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260206-1767E1- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Rapor geçmişi 2
- Rapor 1 ⚠️ ESCALATION #2 (45h active): Phishing - coraslots[.]net
- Rapor 2 ⚠️ ESCALATION #3 (629h active): Phishing - coraslots[.]net
Data Coverage
Güvenlik Sinyalleri
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 10.08.2026
Tespit zaman çizelgesi
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin