MALICIOUS — CRITICAL
yoribet.com Crypto Casino Phishing Site – Elevated Risk
yoribet[.]
Analysis of the domain yoribet.com shows it was registered on 29 July 2025 through MAT BAO CORPORATION and currently resolves to the Cloudflare‑owned address 172.67.187.242, ASN 13335, located in the United States.
- VirusTotal
- 7/93
- Blocklists
- No stored match
- Ketersediaan
- Konten tidak tersedia · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
yoribet.com — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Genericcrypto; Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 7/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, Fortinet, G-Data); URLScan malicious verdict; PhishDestroy score 71/100. Registrar: MAT BAO.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
Analysis of the domain yoribet.com shows it was registered on 29 July 2025 through MAT BAO CORPORATION and currently resolves to the Cloudflare‑owned address 172.67.187.242, ASN 13335, located in the United States. The site presents the page title “Yoribet: Most Popular Online Crypto Casino Based on Blockchain,” indicating a crypto‑casino offering. The TLS certificate is identified as WE1, and the domain is listed on a single security blocklist. Reputation services assign low confidence scores: Scamadviser 31 / 100 and Gridinsoft 0 / 100.
VirusTotal analysis reports that seven of ninety‑three AV engines flagged the domain, reinforcing the malicious assessment. The observed payload matches the Gambler Scam phishing kit, and the activity has been categorized as a crypto scam. The domain has been blocked by PhishDestroy and is presently taken offline. Evidence confirms the use of a reputable CDN (Cloudflare) to mask the true hosting infrastructure, complicating direct attribution.
No additional content or HTTP response details are available, and the current offline status prevents live verification of the landing page. Defenders should continue to block the IP 172.67.187.242 at network perimeter, add yoribet.com to URL filtering and phishing protection lists, and monitor for re‑registration or similar domains employing the same kit. Continuous re‑scanning with multi‑engine services is advised to capture any future changes in detection rates. Until further activity is observed, the domain remains a high‑confidence indicator of a crypto‑focused phishing campaign.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data13 recorded checks
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Intelijen Forensik
Casino / Gambling License Verification
Analisis VirusTotal
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.