Lompat ke laporan keamanan
⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 14. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
Keamanan domain dan intelijen ancaman

xcas[.]bet

“Xcas: Most Popular Online Crypto Casino Based on Blockchain”

Putusan ancaman Kritis 95/100 skor bukti
Ketersediaan Konten tidak tersedia Konten tidak tersedia dalam observasi terbaru
Deteksi Total Virus: 14/93 URLQuery threat systems: 3 alerts Peniruan identitas merek: Genericcrypto
18/02/2026 Genericcrypto 9 Reports Sent CDN
Ringkasan laporan

xcas.bet — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Genericcrypto; Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 14/93 (alphaMountain.ai, CRDF, CyRadar, Ermes, Fortinet); URLQuery 3 alerts; URLScan malicious verdict; PhishDestroy score 95/100. Registrar: PDR.

Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.

Ringkasan bukti
KRITIS
Ref
6A616317
Skor
95/100

This site, xcas.bet, posed as a cryptocurrency casino, claiming to be a "Most Popular Online Crypto Casino Based on Blockchain." It is classified as a "Gambler Scam" cryptocurrency scam, threatening users with potential financial loss through fraudulent gambling operations.

Technical analysis shows 14 out of 95 VirusTotal vendors flagged the domain as malicious. It was registered on 2026-02-21 via PDR Ltd. d/b/a PublicDomainRegistry.com, using IP address 188.114.96.3 (US, AS13335 Cloudflare, Inc.). The SSL certificate is issued by Google Trust Services / WE1, and nameservers are norman.ns.cloudflare.com and evelyn.ns.cloudflare.com.

Currently, the domain is DOWN/OFFLINE. The risk level is high due to the confirmed scam type, recent creation date, and multiple security vendor detections.

VirusTotal
VirusTotal
14 det.
URLQuery
URLQuery
3 threat alerts
URLScan
URLScan
Sertifikat TLS
Kedaluwarsa atau belum diverifikasi -66d
Status terpantau
Konten tidak tersedia 502
PhishDestroy
Daftar Hapus
Terdaftar
Reports Sent
9
Cakupan data VirusTotal 14 / 93 URLQuery 3 threat-system alerts PhishStats tidak diperiksa OTX no community references CF Radar scan completed URLScan capture laporan yang disimpan URLScan verdict malicious Pemblokiran DNS tidak diperiksa TLS Kedaluwarsa atau belum diverifikasi WHOIS not parsed Tangkapan layar 3 captures · 3 sources Rantai pengalihan tidak diselidiki
Intelijen Keamanan Jaringan
Threat Detection Systems 3 alerts
Detection System Indicator Verdict Alert
OpenDNS xcas.bet phishing Phishing Block
Hagezi Threat Feed xcas.bet malicious Sinkholed
DNS4EU xcas.bet malicious Sinkholed

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
26/26
Initial Abuse Report (#1)
Sent to 1 abuse contact at PDR Ltd. d/b/a PublicDomainRegistry.com with forensic evidence
abuse-contact@publicdomainregistry.com
26/02/2026
ICANN Escalation #2
Escalation #2 sent to 3 recipients including ICANN Compliance — follow-up record after a previous report
abuse-contact@publicdomainregistry.comabuse@identitydigital.comcompliance@icann.org
03/03/2026
ICANN Escalation #3
Escalation #3 sent to 3 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse-contact@publicdomainregistry.comabuse@identitydigital.comcompliance@icann.org
04/03/2026
ICANN Escalation #4
Escalation #4 sent to 3 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse-contact@publicdomainregistry.comabuse@identitydigital.comcompliance@icann.org
06/03/2026
ICANN Escalation #5
Escalation #5 sent to 3 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse-contact@publicdomainregistry.comabuse@identitydigital.comcompliance@icann.org
05/04/2026
ICANN Escalation #6
Escalation #6 sent to 3 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse-contact@publicdomainregistry.comabuse@identitydigital.comcompliance@icann.org
20/04/2026
ICANN Escalation #7
Escalation #7 sent to 3 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse-contact@publicdomainregistry.comabuse@identitydigital.comcompliance@icann.org
22/04/2026
ICANN Escalation #8
Escalation #8 sent to 3 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse-contact@publicdomainregistry.comabuse@identitydigital.comcompliance@icann.org
26/04/2026
ICANN Escalation #9
Escalation #9 sent to 3 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse-contact@publicdomainregistry.comabuse@identitydigital.comcompliance@icann.org
28/04/2026
9 Reports Filed
9 report records were stored over 168 days; current observed status: Konten tidak tersedia

Status Daftar Blokir Publik

Tangkapan tersimpan

Judul Halaman
Xcas: Most Popular Online Crypto Casino Based on Blockchain
Sertifikat TLS
Kedaluwarsa atau belum diverifikasi · Diterbitkan oleh Google Trust Services / WE1

Intelijen Domain

Domain
URLScan Verdict Berbahaya score 100 Phishing report ↗
Server / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Reputasi Edge-IP tidak dikaitkan dengan domain ini.
Alamat IP 188.114.96.3 CDN
LokasiUS San Francisco, US
JaringanAS13335 · Cloudflare, Inc.
IP asal tersembunyi di balik proksi CDN. Hasil IP terbalik untuk alamat edge berisi penyewa yang tidak terkait; menemukan asal memerlukan DNS pasif atau data transparansi sertifikat.
Status HTTP502 Error
Waktu hingga pertama kali tidak tersedia 9 days
Yang kami hitung Waktu yang berlalu sejak laporan penyalahgunaan pertama kali disimpan hingga pengamatan pertama bahwa konten tersebut tidak tersedia. Hal ini tidak dapat menentukan penyebabnya.
Minimum notice count 9 is the number of stored outgoing report records for this domain. It does not by itself prove acknowledgement or action by a recipient.
Isi setiap laporan Catatan laporan keluar yang disimpan dapat merujuk pada bukti yang tersedia pada saat itu, seperti keputusan vendor, data pendaftaran, detail hosting, klasifikasi, atau tangkapan layar. Halaman ini tidak menyimpulkan secara pasti muatan yang dikirimkan, penerimaan, pengakuan, atau tindakan oleh penerima.
ICANN RAA §3.18 The history below lists stored escalation records and timestamps. It does not by itself establish receipt, acknowledgement, compliance, or enforcement by any recipient.
Rincian teknisDNS, SAN SSL, cap waktu
Pertama Kali Terdeteksi18/02/2026
DOM Analysisanalyzed 29/07/2026score 0/100
IoC Extractionscanned 02/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://xcas.bet/
Server namaevelyn.ns.cloudflare.com
TLS Observationvalid from 11/03/2026scanned 15/03/2026
Case ID
ICANN OVERSIGHT

Akreditasi dan konteks RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Tidak ada yang dikirim secara otomatis.
Riwayat Laporan Penyalahgunaan · 9 stored reports over 61 days · click to expand
This timeline is built from stored outgoing report records. It documents timestamps and listed recipients, but does not by itself prove delivery, acknowledgement, or recipient action.
9 abuse reports filed over 168 days — latest observed status: Konten tidak tersedia
The records name PDR Ltd. d/b/a PublicDomainRegistry.com as a recipient or subject. ICANN Compliance appears in the recipient field for at least one record.
9
reports
168
days
ICANN CC
  1. Report #1 Feb 26, 2026 · 22:58 UTC
    Phishing Abuse Report: xcas[.]bet
    abuse-contact@publicdomainregistry.com
  2. Report #2 ICANN CC 99h still active Mar 3, 2026 · 02:37 UTC
    ESCALATION #2 (99h active): Phishing - xcas[.]bet
    abuse-contact@publicdomainregistry.com abuse@identitydigital.com compliance@icann.org
  3. Report #3 ICANN CC 135h still active Mar 4, 2026 · 14:36 UTC
    ESCALATION #3 (135h active): Phishing - xcas[.]bet
    abuse-contact@publicdomainregistry.com abuse@identitydigital.com compliance@icann.org
  4. Report #4 ICANN CC 180h still active Mar 6, 2026 · 11:16 UTC
    ESCALATION #4 (180h active): Phishing - xcas[.]bet
    abuse-contact@publicdomainregistry.com abuse@identitydigital.com compliance@icann.org
  5. Report #5 ICANN CC 888h still active Apr 5, 2026 · 02:05 UTC
    ESCALATION #5 (888h active): Phishing - xcas[.]bet
    abuse-contact@publicdomainregistry.com abuse@identitydigital.com compliance@icann.org
  6. Report #6 ICANN CC 1261h still active Apr 20, 2026 · 15:01 UTC
    ESCALATION #6 (1261h active): Phishing - xcas[.]bet
    abuse-contact@publicdomainregistry.com abuse@identitydigital.com compliance@icann.org
  7. Report #7 ICANN CC 1314h still active Apr 22, 2026 · 20:28 UTC
    ESCALATION #7 (1314h active): Phishing - xcas[.]bet
    abuse-contact@publicdomainregistry.com abuse@identitydigital.com compliance@icann.org
  8. Report #8 ICANN CC 1407h still active Apr 26, 2026 · 17:28 UTC
    ESCALATION #8 (1407h active): Phishing - xcas[.]bet
    abuse-contact@publicdomainregistry.com abuse@identitydigital.com compliance@icann.org
  9. Report #9 ICANN CC 1456h still active Apr 28, 2026 · 18:25 UTC
    ESCALATION #9 (1456h active): Phishing - xcas[.]bet
    abuse-contact@publicdomainregistry.com abuse@identitydigital.com compliance@icann.org
Record scope: the timeline documents outgoing records stored by PhishDestroy. Delivery, acknowledgement, and subsequent action require separate recipient or infrastructure evidence.
Casino / Gambling License Verification
Unverified gambling license
This domain markets casino/gambling services. Scam casinos routinely display fake Curaçao, MGA, or Kahnawake license badges that don’t exist in the real registries. Always verify the license number against the official regulator database before depositing. If the site shows a seal but no clickable registry link — or the linked registry page doesn’t exist — treat it as fraudulent.
Curaçao eGaming (official) Malta Gaming Authority UK Gambling Commission PA Gaming Control Kahnawake Gaming Gibraltar Gambling
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

14 / Vendor keamanan 93 menandai domain ini
View on VT
Last analyzed Previous stored snapshot: 10 detections
alphaMountain.ai
CRDF
CyRadar
Ermes
Fortinet
G-Data
Kaspersky
Seclookup
SOCRadar
Sophos

Bukti Terarsip

Wayback Machine Snapshot
Cuplikan sejarah tersedia untuk tinjauan bukti
View Archive

Bukti & Laporan Eksternal

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-1772505421-xcas.bet Recipient: abuse-contact@publicdomainregistry.com
URLScan evidence VirusTotal evidence URLQuery evidence

Apakah Anda Terpengaruh oleh Situs Ini?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri

Periksa Domain Apa Pun

Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik

Pindai Sekarang

Laporkan Phishing

Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas

Laporan

Pemberitahuan Ancaman Real-Time

Laporan phishing terbaru dan perubahan ketersediaan yang diamati

Pantau

Tetap Terinformasi, Tetap Aman

Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive

Pemberitahuan Ancaman Real-Time Ajukan Banding Terhadap Iklan Ini
HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/xcas.bet"
  title="PhishDestroy threat report for xcas.bet"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Surat Terima Kasih yang Sangat Tulus

Pembuat draf satir

Penerima
Konteks biaya

Draf satir. Angka biaya merupakan perkiraan; tidak diklaim bahwa angka tersebut secara tepat terkait dengan domain ini.