gamelu[.]cc
“Gamelu | Decentralized Web3 Gambling Site with Provable Trust”
Зведення доказів
This domain, gamelu.cc, was observed on July 22 2026 and is currently offline. The site presented the title "Gamelu | Decentralized Web3 Gambling Site with Provable Trust", indicating it attempted to appear as a Web3 gambling service. Registration information shows the domain was created on June 16 2026 through Dynadot Inc. DNS resolution points to IP 104.21.0.118, which belongs to Cloudflare, Inc. (AS13335) and is located in the United States. The domain uses Cloudflare nameservers brett.ns.cloudflare.com and tessa.ns.cloudflare.com and presents an SSL certificate issued by Google Trust Services under the WE1 root, confirming TLS termination at the CDN edge.
VirusTotal analysis recorded three detections out of ninety‑one scanners, confirming that at least a minority of security engines recognized malicious behavior. The domain appears on three public blocklists and is actively blocked by PhishDestroy, MetaMask, and SEAL, reflecting consensus among threat‑intelligence providers that the site is associated with phishing or fraudulent activity. Gridinsoft assigned a trust score of zero out of one hundred, further indicating a high likelihood of abuse. No additional payload, kit, or brand impersonation evidence was captured beyond the generic gambling narrative in the page title.
The lack of live HTTP response limits deeper content inspection, and the short lifespan of the domain reduces the amount of observable activity. Defenders should continue to block the domain at perimeter and DNS layers, monitor for any re‑registration attempts, and incorporate the IP address and associated ASN into threat‑intel feeds. Because the site leveraged a reputable CDN and a valid SSL certificate, organizations relying solely on certificate validity may miss this indicator; correlation with blocklist entries and low trust scores remains essential. Ongoing observation of related Cloudflare‑hosted subdomains is recommended to detect potential migration of the campaign.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260618-84E79B- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Технології
Виявлено 1 технологію з високою впевненістю
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога