duzodex[.]com
duzodex.com için kimlik avı ve güvenlik kontrolü
“Duzodex: Most Popular Online Crypto Casino Based on Blockchain”
duzodex.com — İçerik kullanılamıyor (HTTP 502). Marka kimliğine bürünme: Genericcrypto; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 12/93 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 100/100. Kayıt kuruluşu: Dominet (HK).
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Analysis of duzodex.com shows a newly created domain (registered 3 Nov 2025 via Dominet (HK) Limited) that was used to host a crypto‑casino phishing page titled “Duzodex: Most Popular Online Crypto Casino Based on Blockchain”. The site employed the publicly available Gambler Scam phishing kit and was classified as a crypto scam. Infrastructure inspection reveals the domain resolves to 172.67.192.121, an address owned by Cloudflare (AS13335) in the United States, and it used Cloudflare’s default nameservers kimora.ns.cloudflare.com and roman.ns.cloudflare.com. No TLS certificate was observed, indicating the site was served over HTTP only.
The page is currently taken offline, but historical data show that 12 of 93 VirusTotal scanners flagged the domain as malicious, and it appears on a single external blocklist. Reputation services assign extremely low trust scores: Gridinsoft rates it 0 / 100 and Scamadviser 1 / 100, reflecting the high confidence in malicious intent. PhishDestroy has already added the domain to its block list.
Defenders should immediately block duzodex.com and its resolving IP 172.67.192.121 at the perimeter, update URL filtering rules, and monitor for any resurgence of the Gambler Scam kit or similar crypto‑casino lures. Given the Cloudflare hosting, shared infrastructure may host unrelated legitimate services, so any future activity from the same IP should be correlated with the observed phishing behavior before taking broader action. Continuous re‑scanning of the domain and its IP is advised, as the offline status may change if the operators redeploy the site on a different host.
Güvenlik Sinyalleri
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Kanıtlar ve Dış Raporlar
PD-20260105-6BF64D Recipient: domainabuse@service.aliyun.com Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin