bitxlucky[.]vip
“Bitxlucky: Crypto Casino Games & Casino Slot Games - Crypto Gambling”
bitxlucky.vip — Контент недоступний. Тип шахрайства: Crypto Gambling. Зведення доказів: VirusTotal 1/95 (SOCRadar); URLQuery 2 alerts; PhishDestroy score 67/100. Реєстратор: Eranet International.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of bitxlucky.vip shows a newly registered domain (created 21 Feb 2026) that was used to host a crypto‑ gambling phishing kit. The site presented the page title “Bitxlucky: Crypto Casino Games & Casino Slot Games – Crypto Gambling,” indicating the intended lure. The domain was registered through Eranet International Limited and is serviced by Cloudflare nameservers nancy.ns.cloudflare.com and randy.ns.cloudflare.com. DNS resolution points to IP 188.114.96.3, which belongs to the Cloudflare network (AS13335) and is geolocated in the United States.
No TLS certificate was detected, meaning the site operated over plain HTTP, which is typical for low‑trust phishing sites. Reputation services assign extremely low trust scores: Gridinsoft 1/100 and Scamadviser 1/100. VirusTotal analysis recorded a single positive detection out of 95 scanners, and the domain appears in one AlienVault OTX pulse and on a single external blocklist (PhishDestroy). The phishing kit has been identified as the “Gambler Scam,” a template frequently used to mimic crypto casino platforms and harvest credentials or private keys.
The site is currently taken offline, but the infrastructure—registrar, Cloudflare hosting, and the lack of HTTPS—remains observable. Defenders should continue to block the domain and its associated IP at perimeter defenses, monitor for any future re‑registration of the same name or similar variants, and add the IP 188.114.96.3 to threat‑intel feeds. Because the domain’s content has not been archived, further forensic detail of the landing page is unavailable, and analysts should treat the observed indicators as the complete evidence set.
Сигнали безпеки
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | bitxlucky.vip |
malicious | Sinkholed |
| Hagezi Threat Feed | bitxlucky.vip |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260201-019072 Recipient: support@eranet.com, support@tnet.hk, info@todaynic.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога