xfortune[.]cc
“Xfortune: Elon Musk’s Official Crypto Casino Powered by Blockchain”
Analysis as of July 23 2026 indicates that xfortune.cc is currently offline but exhibits multiple indicators of a high‑risk crypto phishing operation. The site was registered on 21 February 2026 through Global Domain Group LLC and resolves to 188.114.97.3, an address owned by Cloudflare (AS13335) located in the United States. DNS resolution uses the Cloudflare authoritative nameservers chance.ns.cloudflare.com and olivia.ns.cloudflare.com. The SSL certificate presented is issued by Google Trust Services under the WE1 identifier, which is typical for Cloudflare‑proxied services. The page title retrieved before takedown reads “Xfortune: Elon Musk’s Official Crypto Casino Powered by Blockchain,” matching the classified scam type of a crypto‑focused fraud.
Automated analysis on VirusTotal shows that 18 of 95 antivirus and URL‑reputation engines flagged the domain, confirming malicious behavior. Additional security products have blocked the domain, including PhishDestroy, MetaMask, and SEAL. The site also appears on three external blocklists, reinforcing its reputation as a phishing target. Infrastructure inspection reveals the use of third‑party tracking technologies such as Twitter Ads, Facebook Pixel, and Cloudflare Browser Insights, which are commonly employed to gather visitor data and monetize traffic. The underlying phishing kit has been identified as the “Gambler Scam” package, a known template for cryptocurrency‑themed lures.
Gridinsoft’s trust score for the domain is 1 / 100, indicating extreme lack of credibility. While the domain is presently offline, the combination of a recent registration date, Cloudflare‑based hosting, low trust score, multiple vendor detections, and inclusion on blocklists suggests an active campaign that may have been operating for a short window.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260219-5B56CE- Заголовок збереженої сторінки
- Xfortune: Elon Musk’s Official Crypto Casino Powered by Blockchain
- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Section 3.1 of AUP: The domain xfortune.cc is engaged in phishing activities, which are explicitly prohibited under your Acceptable Use Policy. This domain is being used to deceive individuals into providing sensitive personal information.
Section 4.2 of TOS: The continued operation of xfortune.cc constitutes a violation of your Terms of Service, as it promotes fraudulent activities that can lead to significant harm to users and undermine the integrity of your services.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which includes phishing schemes that exploit user credentials.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, which is applicable to the activities conducted by xfortune.cc.
CAN-SPAM Act (15 U.S.C. § 7701): This act regulates commercial email and prohibits deceptive practices in electronic communications, which are evident in the phishing attempts associated with this domain.
Regulatory Note: Failure to take immediate action against xfortune.cc may result in liability under applicable laws and could expose your organization to regulatory scrutiny. Prompt compliance is essential to mitigate potential legal repercussions.
Історія повідомлень 9
- Повідомлення № 1 ⚠️ ESCALATION #2 (350h active): Phishing - xfortune[.]cc
- Повідомлення № 3 ⚠️ ESCALATION #3 (1256h active): Phishing - xfortune[.]cc
- Повідомлення № 4 ⚠️ ESCALATION #4 (1353h active): Phishing - xfortune[.]cc
- Повідомлення № 5 ⚠️ ESCALATION #5 (1487h active): Phishing - xfortune[.]cc
- Повідомлення № 6 ⚠️ ESCALATION #6 (1533h active): Phishing - xfortune[.]cc
- Повідомлення № 7 ⚠️ ESCALATION #7 (1578h active): Phishing - xfortune[.]cc
- Повідомлення № 8 ⚠️ ESCALATION #8 (1627h active): Phishing - xfortune[.]cc
- Повідомлення № 9 ⚠️ ESCALATION #9 (1724h active): Phishing - xfortune[.]cc
- Повідомлення № 10 ⚠️ ESCALATION #10 (1826h active): Phishing - xfortune[.]cc
Сигнали безпеки
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | xfortune.cc |
malicious | Sinkholed |
| DigiCert UltraDNS | xfortune.cc |
malicious | Sinkholed |
| DNS4EU | xfortune.cc |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
Хронологія виявлення
-
Статус домену
Доступний → Недоступний
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога