Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@registrar.eu.
The latest stored availability evidence still shows the domain reachable; 26 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
rainbetcasinos-nl[.]com
“Rainbet Casino - Speel Online & Claim Bonussen”
rainbetcasinos-nl.com — Letzter bekanntermaßen aktiv (HTTP 200). Betrugstyp: Credential Phishing. Zusammenfassung der Beweislage: VirusTotal 14/91 (ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 2 alerts; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Registrar: Hosting Concepts.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Analysis of rainbetcasinos-nl.com shows a newly registered domain created on May 06, 2026 that is currently active and resolves to the IP address 188.114.97.3. The domain is hosted on Cloudflare infrastructure, as indicated by its authoritative name servers cecelia.ns.cloudflare.com and jaxson.ns.cloudflare.com. Registration was performed through Hosting Concepts B.V., operating under the Registrar.eu brand, which is a known registrar for a variety of malicious actors. The domain has been added to three security blocklists and is actively blocked by PhishDestroy, MetaMask, and SEAL, confirming that multiple threat‑intelligence feeds consider it malicious.
No public scan results from VirusTotal are available, and the absence of detections should not be taken as an indication of safety. The lack of a published page title or brand target means that the specific content hosted on the site has not yet been publicly documented, but the classification as a generic phishing or credential‑harvesting operation is supported by its inclusion on phishing‑focused blocklists. Defenders should consider adding the domain and its resolving IP address to outbound filtering rules, enforce DNS blocking for the observed nameservers, and monitor for any newly observed sub‑domains that resolve to the same IP.
Because the domain leverages Cloudflare’s CDN, any attempt to bypass DNS‑based controls may be mitigated by TLS inspection where feasible. Continuous monitoring of Registrar.eu registrations for similar patterns is recommended, as the registrar has previously been associated with malicious deployments. Organizations should also alert users to the possibility of unsolicited communications that reference the domain, even though the exact brand being impersonated is not yet identified.
Erkenntnisse zur Netzwerksicherheit
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | rainbetcasinos-nl.com |
malicious | Sinkholed |
| Quad9 DNS | rainbetcasinos-nl.com |
malicious | Sinkholed |
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Technologien · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % KonfidenzHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % KonfidenzVirusTotal-Analyse
Archivierte Beweise
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of rainbetcasinos-nl.com · checked Jul 22, 2026
Analyse der Website-Konfiguration
Nachweise und externe Berichte
PD-20260722-257200 Recipient: abuse@registrar.eu Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt