Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
It contains 4 outgoing records; the latest is dated . The recorded recipient is abuse@nicenic.net.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
ninebet[.]io
“Ninebet: Most Popular Online Crypto Casino Based on Blockchain”
ninebet.io — Dernier actif connu (HTTP 301). Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 100 det.; PhishDestroy score 100/100. Bureau d’enregistrement: NiceNIC.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, ninebet.io, is flagged as a high‑risk crypto‑scam infrastructure. The site is fronted by Cloudflare and uses a Let’s Encrypt certificate (E7). Registration was performed through NiceNIC International Group Co., Limited on 30 Oct 2025. DNS resolves to 172.67.204.249, an IP owned by Cloudflare (AS13335) located in the United States. The domain appears on one security blocklist and is listed as blocked by PhishDestroy. VirusTotal scans have returned 14 detections out of 95 vendors, and Gridinsoft assigns a trust score of 1 / 100, indicating extreme suspicion. The HTTP response is a 301 redirect, and the page title advertises “Ninebet: Most Popular Online Crypto Casino Based on Blockchain,” matching the reported “Crypto Scam” classification. Analysis of the hosting environment identified the Gambler Scam phishing kit, which is commonly used to harvest cryptocurrency credentials. At present, no additional behavioral data such as login capture URLs or payloads have been disclosed. Defenders should block DNS resolution and HTTP(S) traffic to ninebet.io, add the IP 172.67.204.249 to network deny lists, and monitor for any attempts to contact the nameservers elmo.ns.cloudflare.com and sharon.ns.cloudflare.com. Continuous threat‑intel feeds should be consulted for updates, and any observed credential harvesting attempts should be treated as compromised.
Signaux de sécurité
Renseignements sur la sécurité réseau Registrar context
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Latest Classified Outcome 2026-08-15 02:45:09 UTC
Historique des signalements d’abus · 4 stored reports over 6 days · click to expand
-
Report #1 Feb 3, 2026 · 06:31 UTCPhishing Abuse Report: ninebet[.]ioabuse@nicenic.net
-
Report #2 Escalation 12h still active Feb 3, 2026 · 18:38 UTCESCALATION #2 (12h active): Phishing - ninebet[.]ioabuse@nicenic.net
-
Report #3 Escalation 55h still active Feb 5, 2026 · 13:36 UTCESCALATION #3 (55h active): Phishing - ninebet[.]ioabuse@nicenic.net
-
Report #4 Escalation 131h still active Feb 8, 2026 · 18:31 UTCESCALATION #4 (131h active): Phishing - ninebet[.]ioabuse@nicenic.net
Casino / Gambling License Verification
Technologies · 1 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comAnalyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
PD-1770100225-ninebet.io Recipient: abuse@nicenic.net Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif