Is x-cas .us safe?
http://x-cas.us/
x-cas.us shows high-risk crypto casino with phishing and scam flags
x-cas.us presents as a blockchain crypto casino claiming service since 2017. Multiple antivirus engines flag it as phishing or malicious, the browser scan returns a malicious score of 100 with phishing and crypto scam categories, and the page uses a Ronaldo-branded signup form. No licensing, contact details, or withdrawal evidence is visible. The site redirects from HTTP to HTTPS and loads third-party trackers.
01 · Investigation Brief
Investigation Brief
x-cas.us presents as a blockchain crypto casino claiming service since 2017. Multiple antivirus engines flag it as phishing or malicious, the browser scan returns a malicious score of 100 with phishing and crypto scam categories, and the page uses a Ronaldo-branded signup form. No licensing, contact details, or withdrawal evidence is visible. The site redirects from HTTP to HTTPS and loads third-party trackers.
What the site appears to do
The captured page shows a dark-themed landing page with a yellow spade logo, a large image of Cristiano Ronaldo in a yellow jersey, and text claiming partnership with CR7. It promotes registration for a free reward, followed by steps labeled JUST REGISTER, GET A REWARD, PLAY OR WITHDRAW. Below is an email and password signup form.
Strongest evidence and limitations
the browser scan completed with a malicious score of 100 and explicitly categorized the site under phishing and Generic Crypto / Crypto Scam brands. Fourteen antivirus engines returned malicious or phishing detections, including alphaMountain.ai, BitDefender, Kaspersky, and others; one additional engine flagged it suspicious. the browser threat feed returned no threat. The TLS certificate is valid and issued by Google Trust Services. The hosting IP shows zero abuse confidence. No page content proves credential harvesting or forced downloads; the observed flow is a standard registration form.
Practical user impact
Users who register and deposit cryptocurrency face elevated operator risk due to the adverse sandbox and antivirus signals plus the absence of any visible licensing or contact information. The page does not demonstrate blocked withdrawals or rigged games in the captured content. Avoid providing payment details or connecting wallets until independent verification of licensing and payout history exists.
Why the score is 25
A completed sandbox observation returned an adverse result. Coverage remains separate so missing sources cannot be mistaken for clean results.
02 · Security Evidence
Security evidence
Antivirus Engines
15/ 92
detectionsSaved result - stale
15 engines flagged this URL
Every saved adverse engine is listed below. The full provider matrix remains available for audit.
- Malicious
- 14
- Suspicious
- 1
- Total
- 92
| Engine | Finding |
|---|---|
| ADMINUSLabsMalicious | malicious |
| alphaMountain.aiMalicious | phishing |
| BitDefenderMalicious | phishing |
| Chong Lua DaoMalicious | malicious |
| CyRadarMalicious | phishing |
| Forcepoint ThreatSeekerMalicious | phishing |
| FortinetMalicious | phishing |
| G-DataMalicious | phishing |
| GridinsoftMalicious | phishing |
| KasperskyMalicious | phishing |
| LionicMalicious | phishing |
| RisingMalicious | phishing |
| SophosMalicious | phishing |
| VIPREMalicious | phishing |
| ESETSuspicious | suspicious |
All 92 engine results
- ADMINUSLabs - malicious - Malicious
- alphaMountain.ai - phishing - Malicious
- BitDefender - phishing - Malicious
- Chong Lua Dao - malicious - Malicious
- CyRadar - phishing - Malicious
- Forcepoint ThreatSeeker - phishing - Malicious
- Fortinet - phishing - Malicious
- G-Data - phishing - Malicious
- Gridinsoft - phishing - Malicious
- Kaspersky - phishing - Malicious
- Lionic - phishing - Malicious
- Rising - phishing - Malicious
- Sophos - phishing - Malicious
- VIPRE - phishing - Malicious
- ESET - suspicious - Suspicious
- 0xSI_f33d - unrated - Clean
- Abusix - clean - Clean
- Acronis - clean - Clean
- AILabs (MONITORAPP) - clean - Clean
- AlienVault - clean - Clean
- AlphaSOC - unrated - Clean
- Antiy-AVL - clean - Clean
- ArcSight Threat Intelligence - unrated - Clean
- AutoShun - unrated - Clean
- Bfore.Ai PreCrime - unrated - Clean
- Bkav - unrated - Clean
- BlockList - clean - Clean
- Blueliv - clean - Clean
- Certego - clean - Clean
- ChainPatrol - unrated - Clean
- CINS Army - clean - Clean
- Cluster25 - unrated - Clean
- CRDF - clean - Clean
- Criminal IP - unrated - Clean
- CSIS Security Group - unrated - Clean
- CTX AI - clean - Clean
- Cyan - unrated - Clean
- Cyble - clean - Clean
- desenmascara.me - clean - Clean
- DNS8 - unrated - Clean
- Dr.Web - clean - Clean
- EmergingThreats - clean - Clean
- Emsisoft - clean - Clean
- Ermes - unrated - Clean
- ESTsecurity - clean - Clean
- Fortra - unrated - Clean
- GCP Abuse Intelligence - unrated - Clean
- Google Safe Browsing - clean - Clean
- GreenSnow - clean - Clean
- GreyNoise - unrated - Clean
- Guardpot - unrated - Clean
- Heimdal Security - clean - Clean
- Hunt.io Intelligence - unrated - Clean
- IPsum - clean - Clean
- Juniper Networks - clean - Clean
- K7AntiVirus - unrated - Clean
- LevelBlue - clean - Clean
- Lumu - unrated - Clean
- Malwared - clean - Clean
- MalwarePatrol - clean - Clean
- MalwareURL - unrated - Clean
- Mimecast - unrated - Clean
- Netcraft - clean - Clean
- OpenPhish - clean - Clean
- PhishFort - unrated - Clean
- Phishing Database - clean - Clean
- Phishtank - clean - Clean
- PREBYTES - clean - Clean
- PrecisionSec - unrated - Clean
- Quick Heal - clean - Clean
- Quttera - clean - Clean
- SafeToOpen - unrated - Clean
- Sangfor - clean - Clean
- Sansec eComscan - unrated - Clean
- Scantitan - clean - Clean
- SCUMWARE.org - clean - Clean
- Seclookup - clean - Clean
- Snort IP sample list - unrated - Clean
- SOCRadar - unrated - Clean
- StopForumSpam - clean - Clean
- Sucuri SiteCheck - clean - Clean
- ThreatHive - clean - Clean
- URLhaus - clean - Clean
- URLQuery - unrated - Clean
- Viettel Threat Intelligence - clean - Clean
- ViriBack - clean - Clean
- VX Vault - clean - Clean
- Webroot - clean - Clean
- Xcitium Verdict Cloud - clean - Clean
- Yandex Safebrowsing - clean - Clean
- ZeroCERT - clean - Clean
- ZeroFox - unrated - Clean
Security Scans
Checked against the browser threat feeds available to this scan — no hit.
What this means: we opened the page inside a locked-down browser and watched what it tried to load. This is context for the checks above — not a verdict on its own.
What we observed
Loading saved screenshot
Preparing the saved page preview.
Visual context from the captured page
Cristiano Ronaldo in yellow Al-Nassr-style jersey with CR7 and partnership text Email and password fields with REGISTER NOW and free reward headline Three-step flow: JUST REGISTER, GET A REWARD, PLAY OR WITHDRAW
What the captured page showed
3 observations- 01
Cristiano Ronaldo in yellow Al-Nassr-style jersey with CR7 and partnership text
- 02
Email and password fields with REGISTER NOW and free reward headline
- 03
Three-step flow: JUST REGISTER, GET A REWARD, PLAY OR WITHDRAW
03 · Investigation Story
Investigation story
What the site claims
X-cas: Most Popular Online Crypto Casino Based on Blockchain
What we observed
The page content was captured and checked alongside 92 antivirus results.
What independent research found
The search completed without a material external warning or corroborating report.
What remains unverified
2 of the 5 applicable core capabilities did not complete, so those gaps remain visible in the coverage ledger.
What kind of site and risk is this?
Threat category
Crypto Casino & Gambling Fraud
Service and business model
Gambling
Observed behavior
Evidence behind this classification
- 01the browser scan returned malicious score 100 with phishing and crypto scam categories
- 02A completed sandbox observation returned an adverse result.
- 03Saved antivirus evidence is adverse but is not fresh enough for a current conviction.
Risk pattern correlation
Web research findings
Independent findings for x-cas.us, including public complaints, named review sources, registration records, and look-alike-domain evidence. A missing result is shown as unverified, never converted into a clean bill of health.
No independently sourced scam reports or credibility records were found for x-cas.us. That is common for new or low-traffic sites and does not clear the site.
Reputation Sources
How this domain rates across independent threat-intelligence and blocklist providers.
04 · Domain & Infrastructure
Domain & infrastructure
The plumbing behind the site — who registered it, how it’s encrypted, where it’s hosted, and where it links out. A valid certificate or a calm server doesn’t mean the business is honest — scam sites pass these checks too. Use this to corroborate the verdict, not to overturn it.
Infrastructure map
How the saved page connected to the wider web.
- Domainx-cas.us
- Redirects tox-cas.us
- Hosted byCloudflare, Inc.
- Referencesstatic.cloudflareinsights.com
Contact Verification
Saved contact details can help identify the operator. Their presence supports traceability; it does not prove the business is trustworthy.
- No direct contact email found on the captured page.
Domain & Encryption
Redirect Chain
- 1301http://x-cas.us/
- 2200https://x-cas.us/
Server Reputation
Referenced Domains
Outbound domains this page links to or loads resources from. Each links to its own security scan.
05 · Evidence Ledger
Evidence ledger
- Antiviruspartial
- Browser threat feedcomplete
- Page contentpartial
- Analysiscomplete
- Visual evidencecomplete
The conclusion is supported by the evidence saved with this report.
Technical threat
suspiciousMalware, phishing, credential theft and hostile infrastructure.
Additional evidence review · Additional evidence review
Operator / customer risk
unknownComplaints, withdrawals, business conduct and commercial traps.
No confirmed evidence in this dimension.
Source coverage and freshness
Status shows whether usable evidence was saved; finding shows what that evidence observed.
| Source | Result | Completion | Finding | Freshness |
|---|---|---|---|---|
| Antivirus | 15 of 92 engines flagged | Limited | Adverse | stale fallback · Aug 4, 2026 |
| Browser protection | No browser threat-list match | Completed | No adverse finding | Not available |
| Page content | Page fetched · HTTP 200 | Limited | No saved finding | Not available |
| Visual evidence | 3 visible observations saved with the page capture | Completed | No adverse finding | Not available |
| Independent research | The search completed without a material external finding | Completed | No adverse finding | Not available |
- Antivirus
- Result15 of 92 engines flagged
- CompletionLimited
- FindingAdverse
- Freshnessstale fallback · Aug 4, 2026
- Browser protection
- ResultNo browser threat-list match
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
- Page content
- ResultPage fetched · HTTP 200
- CompletionLimited
- FindingNo saved finding
- FreshnessNot available
- Visual evidence
- Result3 visible observations saved with the page capture
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
- Independent research
- ResultThe search completed without a material external finding
- CompletionCompleted
- FindingNo adverse finding
- FreshnessNot available
07 · Safety FAQ
Safety FAQ
Common questions, answered directly from the scan data above — so the answers reflect the saved verdict and evidence in this report.
Is x-cas.us a scam or a legit casino?
Is x-cas.us safe to use?
What should I do if I already sent funds to x-cas.us?
Can I get my money back from x-cas.us?
Is x-cas.us a licensed, regulated casino?
How do I report x-cas.us?
Why does x-cas.us look legitimate if it's a scam?
Has x-cas.us been flagged by antivirus engines?
Is x-cas.us on any phishing or malware blacklists?
Does x-cas.us have a valid SSL certificate?
Where is x-cas.us hosted?
How often is the x-cas.us report updated?
08 · Final Verdict
Final verdict
x-cas.us shows high-risk crypto casino with phishing and scam flags
x-cas.us presents as a blockchain crypto casino claiming service since 2017. Multiple antivirus engines flag it as phishing or malicious, the browser scan returns a malicious score of 100 with phishing and crypto scam categories, and the page uses a Ronaldo-branded signup form. No licensing, contact details, or withdrawal evidence is visible. The site redirects from HTTP to HTTPS and loads third-party trackers.
09 · Community

0 community contributions
Share what happened, what the site requested, and what others should watch for.
Community reviews never change the scanner verdict.