roobet-rewards[.]com
“Roobet Crypto Casino | Best Bitcoin Casino & Online Slots”
ملخص الأدلة
PhishDestroy identifies the domain roobet-rewards.com as an active brand impersonation site masquerading as the legitimate Roobet crypto casino. The malicious infrastructure specifically targets Bitcoin-related users by mirroring the brand’s established online presence, including a deceptive page title identical to the authentic Roobet platform: 'Roobet Crypto Casino | Best Bitcoin Casino & Online Slots'. Current forensic analysis confirms the domain is still operational and remains unresolved for takedown.
This domain was flagged by 5 of 95 VirusTotal vendors as of the latest scan, indicating it has not yet been widely recognized by automated detection systems. Technical reconnaissance reveals the domain resolves to IP address 158.94.209.129 and is registered through NameSilo, LLC. The certificate authority observed is Let's Encrypt, and historical WHOIS data indicates the domain was created on May 06, 2026. A domain age of less than one day suggests a recently deployed campaign likely designed for short-lived operations. There are currently no known entries in public blocklists or threat intelligence feeds.
Security teams are strongly advised to immediately block roobet-rewards.com at the DNS, firewall, and endpoint levels. Users accessing crypto platforms should verify domain legitimacy through official channels and avoid interacting with unsolicited links. Implement strict TLS inspection to monitor certificate issuance for roobet-rewards.com or related variants. Monitor network traffic for connections to 158.94.209.129 and flag any Bitcoin-related credentials entered on this domain. This advisory will be updated as new intelligence emerges.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | roobet.com/assets/cllurwyv.js |
malware | Detects SocGholish obfuscated variant first observed in July 2022 |
| OpenDNS | roobet-rewards.com |
phishing | Phishing Block |
| DNS4EU | roobet-rewards.com |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
التقنيات
حُدّدت ١٢ تقنية عالية الثقة
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب