kuminex[.]com
“Kuminex: Elon Musk’s Official Crypto Casino Powered by Blockchain”
Зведення доказів
This investigation documents the infrastructure and observed characteristics of kuminex.com, which was identified as a phishing site employing the Gambler Scam kit to stage a crypto‑focused fraud. The domain was registered on 21 February 2026 through MAT BAO CORPORATION and currently resolves to the IP address 188.114.96.3, hosted by Cloudflare, Inc. (AS13335) in the United States. No TLS certificate was observed, indicating the site was served over plain HTTP at the time of capture. The page title returned by the server reads “Kuminex: Elon Musk’s Official Crypto Casino Powered by Blockchain,” linking the fraudulent content to a high‑profile public figure and to blockchain‑based gambling.
VirusTotal analysis recorded 14 detections out of 95 security vendors, reflecting moderate consensus among scanning engines that the domain hosts malicious activity. The domain appears on two independent blocklists, PhishDestroy and Enkrypt, confirming its inclusion in threat intelligence feeds. Current operational status is offline, and no additional public Safe Browsing or Open Threat Exchange entries were found.
The limited data set prevents a full assessment of the site’s payload or credential‑harvesting mechanisms, but the combination of the Gambler Scam kit, crypto‑scam classification, and the use of a high‑value brand name suggests a targeted attempt to lure cryptocurrency enthusiasts. Defenders should add the domain and its resolving IP to blocklists, monitor Cloudflare‑origin traffic for similar patterns, and consider tightening outbound filters for cryptocurrency‑related URLs. Ongoing surveillance is advised to detect any re‑registration or relocation of the infrastructure.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-1769248107-kuminex.com- PDF-файл
- PDF із доказами
Історія повідомлень 1
- Повідомлення № 1 ⚠️ ESCALATION #2 (948h active): Phishing - kuminex[.]com
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
9 зовнішніх джерел під наглядом Збігів немає
Хронологія виявлення
-
Статус домену
Доступний → Недоступний
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога