Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
uzmanbahis2[.]one
“En İyi Bahis Siteleri | Uzman Bahis”
ملخص الأدلة
This domain is flagged as an elevated-risk phishing operation specifically targeting users of online betting platforms. Analysis indicates uzmanbahis2.one masquerades as a legitimate betting portal under the guise of "En İyi Bahis Siteleri | Uzman Bahis" to harvest login credentials and financial information from unsuspecting victims. The threat falls under the category of brand impersonation with credential theft objectives, a common tactic in fraudulent betting schemes. Infrastructure analysis reveals multiple technical indicators supporting the malicious classification. The domain resolves to IP address 15.235.115.30 and is registered through Dynadot Inc with a creation date of June 05, 2026, suggesting an unusually forward-dated registration likely intended to evade detection. Security vendors on VirusTotal flag the domain at 18/95 detections, while it appears on at least one security blocklist and is actively blocked by PhishDestroy. The SSL certificate is issued by Let's Encrypt, a common choice for phishing sites due to its free availability. Detected technologies include Bootstrap for front-end design, Apache HTTP Server for hosting, and jsDelivr for content delivery, all commonly exploited in phishing infrastructure. Mitigation against this specific threat type requires immediate action from both end users and network administrators. Users should verify domain authenticity before entering credentials, particularly checking for subtle misspellings or unusual TLDs in betting-related sites. Network-level protections should include blocking the domain and its associated IP address 15.235.115.30 at firewall and DNS levels. Organizations should implement strict certificate validation policies and monitor for Let's Encrypt certificates issued to newly registered domains in betting-related sectors. Security teams are advised to check logs for connections to the domain or IP address and reset credentials for any accounts that may have interacted with the site.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260607-402042- عنوان الصفحة الملتقطة
- En İyi Bahis Siteleri | Uzman Bahis
- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | uzmanbahis2.one |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | uzmanbahis2.one |
malicious | Sinkholed |
| OpenDNS | uzmanbahis2.one |
phishing | Phishing Block |
| DigiCert UltraDNS | uzmanbahis2.one |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
17 ← 18
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of uzmanbahis2.one · checked Jun 26, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب