Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
3656534[.]cc
“欢迎光临”
Ringkasan bukti
This domain, 3656534.cc, is flagged for brand impersonation targeting Bet365, a well-known online gambling platform. Analysis indicates the domain was designed to mimic the legitimate Bet365 brand, likely to deceive users into divulging sensitive account credentials or financial information. No evidence of a crypto drainer kit or direct malware deployment was observed, but the page title '欢迎光临' (translated as 'Welcome') suggests an attempt to create a localized, seemingly legitimate user experience for Chinese-speaking victims. Infrastructure analysis reveals the domain was registered on May 21, 2024, through GoDaddy.com, LLC. It resolves to the IP address 54.178.111.163, hosted on Amazon.com, Inc. infrastructure (AS16509) in Japan. As of the latest assessment, the domain appears on one security blocklist and is flagged by 18 out of 95 security vendors on VirusTotal. The domain is not currently listed on Google Safe Browsing (GSB), though this status may change as additional telemetry is processed. The combination of a recent registration date, low blocklist prevalence, and targeted brand impersonation aligns with typical phishing campaign tactics. The domain has since been taken offline, reducing immediate exposure risk to end users. However, the infrastructure remains a potential vector for future malicious activity, particularly if the threat actor reuses the same hosting provider or registrar for subsequent campaigns. Organizations are advised to monitor for residual DNS caching or proxy-based access attempts. Users who may have interacted with the domain should reset credentials for any associated accounts, particularly those tied to Bet365 or financial services. Continued vigilance is recommended, as threat actors often rotate domains and IPs to evade detection.
Snapshot bukti yang dikirim
- Dikirim
- Catatan buku besar
- 1
- ID kasus
PD-20260318-A0FFBF- Judul halaman yang direkam
- bet365
- Artefak PDF
- Bukti PDF
Teks bukti lengkap
Acceptable Use Policy (AUP): The domain 3656534.cc is actively engaged in phishing activities, which directly contravenes the AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing use of this domain for phishing clearly warrants immediate action under this provision.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which is relevant if the phishing activities target U.S. citizens.
Wire Fraud Statute (18 U.S.C. § 1343): This statute criminalizes schemes to defraud individuals or entities via electronic communications, applicable to the fraudulent activities conducted through this domain.
CAN-SPAM Act: This law regulates commercial email and prohibits deceptive practices in email marketing, which is pertinent given the phishing nature of communications from this domain.
Regulatory Note: Failure to take appropriate action against this domain may expose your organization to liability under applicable laws and regulations. Immediate suspension is recommended to mitigate potential legal repercussions.
Data Coverage
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | 3656534.cc |
phishing | Phishing Block |
| Cloudflare DNS | 3656534.cc |
malicious | Sinkholed |
| DigiCert UltraDNS | 3656534.cc |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 11/08/2026
Linimasa deteksi
-
VirusTotal
0 → 7
Casino / Gambling License Verification
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of 3656534.cc · checked Mar 18, 2026
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive