MALICIOUS — CRITICAL
musodex[.]com
15 of 93 security engines flagged the domain; the latest stored check returned HTTP 502.
- VirusTotal
- 15/93
- Blocklists
- No stored match
- Kullanılabilirlik
- İçerik kullanılamıyor · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
musodex.com — İçerik kullanılamıyor (HTTP 502). Marka kimliğine bürünme: Ton; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 15/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 100/100. Kayıt kuruluşu: Hello Internet.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Digest
musodex.com is classified critical with an evidence score of 100/100. 15 of 93 security engines flagged the domain. Registration metadata recorded via Hello Internet Corp, hosted on 2606:4700:3036::6815:1d0a (CLOUDFLARENET - Cloudflare, Inc., US, US). The latest stored check on 9 Aug 2026 returned HTTP 502 and includes a capture. 1 outgoing abuse report is recorded, most recently on 6 Feb 2026.
Stored generated summary (templated)cerebras · 23.07.2026
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
Analysis of musodex.com, taken offline as of the report date, shows a classic brand‑impersonation campaign targeting the TON ecosystem. The domain was registered on February 21, 2026 through Hello Internet Corp and resolved to the IPv6 address 2606:4700:3036::6815:1d0a, which belongs to AS13335, operated by Cloudflare in the United States. Both authoritative nameservers, deb.ns.cloudflare.com and vern.ns.cloudflare.com, are Cloudflare‑managed, indicating reliance on a large CDN for hosting. No SSL certificate is present, leaving the site without encrypted transport.
The page title retrieved before takedown reads "Musodex: Elon Musk’s Official Crypto Casino Powered by Blockchain," evidencing a crypto‑scam narrative that leverages the notoriety of Elon Musk and the TON brand. The campaign is classified as a crypto scam and uses the Gambler Scam phishing kit, reinforcing the gambling‑oriented monetary fraud model. Detection telemetry shows that 15 of 93 security vendors on VirusTotal flagged the domain, and it appears on one security blocklist, reflecting moderate consensus among scanners. Gridinsoft assigned a trust score of 1 out of 100, and the domain is listed as blocked by PhishDestroy, confirming that active remediation measures have been applied.
While the offline status limits immediate exposure, the infrastructure footprint—Cloudflare hosting, lack of TLS, and a newly registered domain—suggests a short‑lived operation typical of opportunistic impersonation attempts. Defenders should continue to monitor the associated IPv6 address and Cloudflare ASN for any re‑use, enforce domain‑level blocklists for musodex.com, and consider adding the domain to threat‑intel feeds that track TON‑related impersonation. Given the low trust score and vendor detections, any residual traffic should be treated as malicious, and users should be warned against interacting with URLs referencing this domain.
Veri kapsamı13 recorded checks
Güvenlik Sinyalleri
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | musodex.com |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
PD-20260206-06EBE2 Recipient: abuse@hello.co Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.