rain-bet[.]es
“Rainbet Casino ™ — Sitio oficial en España”
Evidence Summary
On August 06, 2026 the domain rain-bet.es was observed as an active generic phishing infrastructure. The domain resolves to the IP address 172.67.140.209 and is served through Cloudflare, using the authoritative name servers pam.ns.cloudflare.com and sterling.ns.cloudflare.com. VirusTotal records indicate that the domain has been scanned by 91 security vendors; at the time of analysis no vendor has raised a detection flag.
The domain is listed on a single external security blocklist and is explicitly blocked by the PhishDestroy mitigation service, confirming that at least one downstream provider has deemed the host malicious. No public page title, SSL certificate details, or HTTP response codes are available in the current intelligence set, so the precise content and landing page characteristics remain unverified. The lack of detection flags does not imply safety, and the presence on a blocklist together with active blocking by PhishDestroy suggests a credible phishing threat.
Defenders should treat rain-bet.es as hostile, enforce DNS or firewall deny rules, and incorporate the domain into internal blocklist feeds. Continuous monitoring of the IP address 172.67.140.209 for changes in reputation, as well as periodic re‑scans on VirusTotal and other sandbox services, is recommended to capture any evolution of the payload or hosting profile. Sharing this indicator with threat‑sharing communities will improve collective visibility and expedite downstream remediation.
Data Coverage
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 12, 2026
8 monitored external feeds No match
Detection timeline
-
First recorded
First stored value: Reachable
Casino / Gambling License Verification
Technologies
8 high-confidence technologies identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of rain-bet.es · checked Aug 6, 2026
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive