zoemux[.]com
zoemux.com 网络钓鱼与安全检查
“Zoemux: Most Popular Online Crypto Casino Based on Blockchain”
zoemux.com — 隐形 · 可达 (HTTP 200). 品牌冒充:Cryptoscam; 诈骗类型:Generic Phishing. 证据摘要: VT 14/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 6 alerts; URLScan malicious; GSB no flag; Spamhaus DBL_PHISH; BL 3 (MetaMask, ScamSniffer, SEAL); cloaking observed; PD 100/100. 注册商: Fewmoretaps OU d/b/a T….
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy first observed zoemux.com on Jun 24, 2026. Stored content metadata identifies Cryptoscam as the apparent target. The captured page title is “Zoemux: Most Popular Online Crypto Casino Based on Blockchain”. Stored page analysis classifies the content as generic phishing. Campaign clustering links the hostname to the Gambler Scam kit. Current evidence score: 100/100 (critical).
Positive findings are stored from 7 sources: VirusTotal, MetaMask, ScamSniffer, SEAL, Spamhaus DBL, URLQuery, and URLScan. VirusTotal recorded 14 detections among 91 engines: alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar, Forcepoint ThreatSeeker, G-Data, Gridinsoft, Kaspersky, LevelBlue, Lionic, Netcraft, Sophos, VIPRE on Jul 18, 2026 at 18:45 UTC. MetaMask, ScamSniffer, and SEAL listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 22:20 UTC. Spamhaus DBL: DBL_PHISH on Jul 24, 2026 at 18:30 UTC. URLQuery recorded 6 threat-system alerts on Jun 24, 2026 at 13:03 UTC. URLScan returned a malicious verdict with score 100; scan metadata assigned phishing as its category on Jul 29, 2026 at 02:32 UTC. Non-positive and contextual checks: Gridinsoft assigned a trust score of 1/100; no observation timestamp was retained. Google Safe Browsing returned no flag on Jun 24, 2026 at 12:50 UTC.
Cloaking was recorded with HTTP 200 on Aug 7, 2026 at 22:30 UTC. The cloaking probe recorded content divergence conditional delivery at 2/100 on Aug 7, 2026 at 22:30 UTC: alive_content: raw=ok; http=200; via=https_proxy. Registration records for the domain list Fewmoretaps OU d/b/a Trustname.com as the registrar and Jun 4, 2026 as the creation date. Registration preceded first observation by 19 days. At collection time, the hostname resolved to 104.21.14.151 on AS13335 (CLOUDFLARENET - Cloudflare, Inc., US). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. DOM analysis on Jun 24, 2026 at 14:20 UTC returned 100/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. TLS metadata lists Let's Encrypt / YE1 as the certificate issuer with validity through Sep 6, 2026; checked Jun 24, 2026 at 13:00 UTC.
The content indicators and 7 positive source findings support the current Cryptoscam-themed generic phishing classification.
网络安全情报 Registrar Integrity Alert
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | app.zoemux.com |
malicious | Sinkholed |
| Hagezi Threat Feed | app.zoemux.com |
malicious | Sinkholed |
| OpenDNS | app.zoemux.com |
phishing | Phishing Block |
| OpenDNS | zoemux.com |
phishing | Phishing Block |
| DNS4EU | zoemux.com |
malicious | Sinkholed |
| Hagezi Threat Feed | zoemux.com |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
ICANN 收到了钱。问责却没有到来。
对于这个 gTLD,上述注册商依据与 ICANN 签订的合同运营。ICANN 收取与注册、续费和转移相关的年度费用、浮动费用及按交易计收的费用。
认证:已变现。问责:请稍后再来查看。
接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。
VirusTotal 分析
证据与外部报告
“I first saw Mr. Beast's post on Twitter about a capital promotion for downloading Zoemux. When I wanted to withdraw, they asked me to deposit first until I reached VIP Cooper status, and they promised I could withdraw all my money. But once I reached VIP Cooper, they asked for another $400 bill to remove the high-risk flag from AML. My withdrawal status is pending. THIS IS A SCAM!!! zoemux.com”
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。