MALICIOUS — CRITICAL
muocux[.]com
The domain muocux.com has been identified as a brand impersonation threat, specifically targeting Base users under the guise of a legitimate crypto casino platform.
- VirusTotal
- 5/92
- Blocklists
- 2 · MetaMask, SEAL
- Доступність
- Останній відомий активний · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
muocux.com — Останній відомий активний (HTTP 200). Тип шахрайства: Gambling. Зведення доказів: VirusTotal 5/92 (ADMINUSLabs, alphaMountain.ai, Gridinsoft, Kaspersky, Netcraft); Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. Реєстратор: Fewmoretaps OU d/b/a T….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
The domain muocux.com has been identified as a brand impersonation threat, specifically targeting Base users under the guise of a legitimate crypto casino platform. This site, with the page title "Muocux: Most Popular Online Crypto Casino Based on Blockchain," was designed to trick visitors into connecting their wallets and ultimately drain their cryptocurrency assets. PhishDestroy categorizes this as a brand impersonation scam with elevated risk, leveraging the trust associated with the Base brand to deceive victims.
Technical analysis reveals several red flags. The domain was created on May 19, 2026, and is registered through Fewmoretaps OU d/b/a Trustname.com, a registrar often associated with malicious domains. It is secured with a Let's Encrypt SSL certificate (E8), which provides a false sense of legitimacy. VirusTotal data shows that 5 out of 95 security vendors flagged the domain as malicious, and it appears on three security blocklists. The domain resolves to IP address 172.67.134.146, and AlienVault OTX has recorded it in one threat intelligence pulse, indicating active monitoring by the security community.
Currently, the site has been taken offline, which mitigates immediate risk but does not eliminate the threat. The domain may be reactivated under a different IP or reused for future campaigns. PhishDestroy advises users to remain vigilant and always verify the authenticity of crypto-related sites using trusted platforms. Avoid connecting wallets or entering personal information on unverified domains, and report any suspicious activity to security teams. For further verification, users can check the domain's status on PhishDestroy's platform.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.