MALICIOUS — CRITICAL
centux[.]us
13 of 91 security engines flagged the domain; the latest stored check returned HTTP 200.
- VirusTotal
- 13/91
- Blocklists
- No stored match
- 可用性
- 最后已知的活跃状态 · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
centux.us — 最后已知的活跃状态 (HTTP 200). 品牌冒充:Genericcrypto; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 13/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 100/100. 注册商: CNOBIN INFORMATION TEC….
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Evidence Digest
centux.us is classified critical with an evidence score of 100/100. 13 of 91 security engines flagged the domain. Registration metadata recorded via CNOBIN INFORMATION TECHNOLOGY LIMITED, hosted on 104.21.67.244 (Cloudflare, Inc., US). The latest stored check on 9 Aug 2026 returned HTTP 200 and includes a capture.
Stored generated summary (templated)cerebras · 2026年7月23日
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
Centux.us was registered on 21 February 2026 through CNOBIN INFORMATION TECHNOLOGY LIMITED and is currently hosted on Cloudflare’s network (AS13335, United States) at IP address 104.21.67.244. The site presents a valid Let's Encrypt R12 certificate, returning HTTP 200 responses, and advertises itself with the page title “Centux: Most Popular Online Crypto Casino Based on Blockchain”. Analysis of the page’s metadata identifies the use of the publicly‑available “Gambler Scam” phishing kit, which aligns with the observed crypto‑scam classification. Reputation services show extreme distrust: Gridinsoft rates the domain 1 / 100 and Scamadviser also assigns a 1 / 100 score. The domain appears on a single security blocklist and is explicitly blocked by the PhishDestroy service.
VirusTotal scans have yielded 14 detections out of 93 antivirus engines, confirming malicious activity. AlienVault OTX includes the domain in one threat‑intel pulse. Nameserver records point to colin.ns.cloudflare.com and jacqueline.ns.cloudflare.com. The available evidence firmly indicates that centux.us is being used to lure victims into a cryptocurrency‑related fraud, likely by impersonating a legitimate online casino service.
While the exact phishing landing pages and credential‑capture mechanisms have not been publicly disclosed, the presence of the Gambler Scam kit suggests a typical credential‑stealing workflow. Defenders should add the domain to network‑level blocklists, enforce DNS filtering, and monitor traffic to the associated Cloudflare IP for anomalous patterns. Continuous re‑scanning with VirusTotal and correlation with threat‑intel feeds such as OTX are recommended to capture any evolving indicators. Incident response teams encountering related malicious emails should treat any URLs pointing to centux.us as malicious and isolate affected endpoints.
数据覆盖范围14 recorded checks
安全信号
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of centux.us · checked Apr 23, 2026
证据与外部报告Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。