Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
3656534[.]cc
“欢迎光临”
Resumen de las pruebas
This domain, 3656534.cc, is flagged for brand impersonation targeting Bet365, a well-known online gambling platform. Analysis indicates the domain was designed to mimic the legitimate Bet365 brand, likely to deceive users into divulging sensitive account credentials or financial information. No evidence of a crypto drainer kit or direct malware deployment was observed, but the page title '欢迎光临' (translated as 'Welcome') suggests an attempt to create a localized, seemingly legitimate user experience for Chinese-speaking victims. Infrastructure analysis reveals the domain was registered on May 21, 2024, through GoDaddy.com, LLC. It resolves to the IP address 54.178.111.163, hosted on Amazon.com, Inc. infrastructure (AS16509) in Japan. As of the latest assessment, the domain appears on one security blocklist and is flagged by 18 out of 95 security vendors on VirusTotal. The domain is not currently listed on Google Safe Browsing (GSB), though this status may change as additional telemetry is processed. The combination of a recent registration date, low blocklist prevalence, and targeted brand impersonation aligns with typical phishing campaign tactics. The domain has since been taken offline, reducing immediate exposure risk to end users. However, the infrastructure remains a potential vector for future malicious activity, particularly if the threat actor reuses the same hosting provider or registrar for subsequent campaigns. Organizations are advised to monitor for residual DNS caching or proxy-based access attempts. Users who may have interacted with the domain should reset credentials for any associated accounts, particularly those tied to Bet365 or financial services. Continued vigilance is recommended, as threat actors often rotate domains and IPs to evade detection.
Instantánea de evidencia enviada
- Enviado
- Registros del libro
- 1
- ID del caso
PD-20260318-A0FFBF- Título de la página capturada
- bet365
- Artefacto PDF
- Evidencia en PDF
Fundamento jurídico
Texto completo de la evidencia
Acceptable Use Policy (AUP): The domain 3656534.cc is actively engaged in phishing activities, which directly contravenes the AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing use of this domain for phishing clearly warrants immediate action under this provision.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which is relevant if the phishing activities target U.S. citizens.
Wire Fraud Statute (18 U.S.C. § 1343): This statute criminalizes schemes to defraud individuals or entities via electronic communications, applicable to the fraudulent activities conducted through this domain.
CAN-SPAM Act: This law regulates commercial email and prohibits deceptive practices in email marketing, which is pertinent given the phishing nature of communications from this domain.
Regulatory Note: Failure to take appropriate action against this domain may expose your organization to liability under applicable laws and regulations. Immediate suspension is recommended to mitigate potential legal repercussions.
Data Coverage
Inteligencia de seguridad de red
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | 3656534.cc |
phishing | Phishing Block |
| Cloudflare DNS | 3656534.cc |
malicious | Sinkholed |
| DigiCert UltraDNS | 3656534.cc |
malicious | Sinkholed |
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 10/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
VirusTotal
0 → 7
Casino / Gambling License Verification
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of 3656534.cc · checked Mar 18, 2026
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.