revalux[.]bet
“REVALUX | Enter the world of sport and stakes!”
revalux.bet — Контент недоступний (HTTP 502). Уособлення бренду: Blast; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 1/93 (Gridinsoft); URLScan malicious verdict; PhishDestroy score 56/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of the domain revalux.bet indicates it was actively impersonating the Blast brand, a known entity in the cryptocurrency or gaming sector, as of July 22, 2026. The domain was registered on February 21, 2026, through an undisclosed registrar and resolved to the IP address 57.129.97.29, hosted on AS16276 (OVH SAS) in Germany. The SSL certificate was issued under the E5 standard, and the page title displayed 'REVALUX | Enter the world of sport and stakes!', suggesting a focus on sports betting or gambling-related fraud. Detection data reveals minimal but targeted flagging: one security vendor (PhishDestroy) blocked the domain, and a single detection was recorded among 93 security vendors on VirusTotal.
Gridinsoft assigned a trust score of 0/100, further corroborating its suspicious nature. The domain appears on one security blocklist, though broader threat intelligence platforms such as Safe Browsing or OTX do not list it in available data. At the time of reporting, revalux.bet was offline, potentially due to takedown efforts or operational cessation by the threat actor. The scam type is classified as brand impersonation, specifically targeting Blast, though the exact mechanics of the fraud—whether involving credential harvesting, payment diversion, or cryptocurrency scams—remain unconfirmed due to limited forensic evidence.
Defenders should treat this domain as elevated risk, particularly organizations associated with Blast or similar brands in the gaming and cryptocurrency sectors. Monitoring for re-registration or re-emergence under similar domains (e.g., typosquatting variants) is recommended. Network defenders may also investigate the hosting IP 57.129.97.29 for additional malicious activity, given its association with OVH SAS, a provider frequently utilized for both legitimate and fraudulent operations.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Криміналістичні дані
Casino / Gambling License Verification
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога