Why this matters — ICANN RAA §3.18 obligation
On PhishDestroy delivered an evidence-backed abuse report
to support@nicenic.net with the evidence stored for the case at that time.
More than 7 months later, the phishing infrastructure remains reachable
.
Under ICANN RAA §3.18 accredited registrars are contractually obliged to “take reasonable and prompt steps to investigate and respond appropriately to any reports of abuse.” Silence beyond 24 hours after a documented notification with verifiable evidence is not a timing issue — it is a policy decision to let the operation continue. PhishDestroy\'s position: where a registrar fails to act on clear evidence, the registrar has aligned itself with the operator of the scheme and bears co-responsibility for downstream harm caused to victims from the moment of notification onward.
neobet[.]cc
Verifica phishing e sicurezza per neobet.cc
“NEOBET | Play at the best online casino based on Blockchain”
neobet.cc — Ultimo attivo conosciuto (HTTP 200). Simulazione del marchio: Cryptoscam; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VT 6/91 (ADMINUSLabs, alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); URLQuery 2 alerts; URLScan malicious; GSB no flag; BL 0; PD 89/100. Registrar: NiceNIC.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
neobet.cc entered the PhishDestroy evidence set on Oct 22, 2025. Stored content metadata identifies Cryptoscam as the apparent target. The stored content classification is crypto scam. The assembled evidence scores 89/100 (high).
Three independent sources are positive: VirusTotal, URLQuery, and URLScan. VirusTotal recorded 6 detections among 91 engines: ADMINUSLabs, alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, Sophos on Jul 26, 2026 at 02:51 UTC. URLQuery recorded 2 threat-system alerts on Jan 5, 2026 at 02:28 UTC. URLScan returned a malicious verdict with score 100 on Mar 4, 2026 at 01:10 UTC. The evidence is not unanimous. The external blocklist snapshot contained no matches on Aug 7, 2026 at 14:20 UTC. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC.
HTTP 200 was recorded on Aug 7, 2026 at 10:39 UTC. Latest classified outcome: live content observed; cause content served on Aug 7, 2026 at 00:42 UTC. Registration records for the domain list NiceNIC International Group Co., Limited as the registrar and Apr 16, 2025 as the creation date. At collection time, the hostname resolved to 69.5.189.56 on AS42624 (swissnetwork02 Global-Data System IT Corporation, SC). The associated network metadata labels the endpoint as AS42624 Global-Data System IT Corporation in Zürich, CH. The stored server header is openresty-cast. Captured page title: “NEOBET | Play at the best online casino based on Blockchain”. DOM analysis completed on Apr 23, 2026 at 15:22 UTC; stored DOM score 0/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. IoC extraction completed on Jul 29, 2026 at 02:43 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists Let's Encrypt / YR2 as the certificate issuer with validity through Sep 29, 2026; checked Jul 9, 2026 at 01:01 UTC.
The 0/100 DOM score means that the DOM pass stored no scored indicators; it does not negate the independent source findings. Taken together, the page content and independent findings support classifying this hostname as Cryptoscam-themed crypto scam.
Indicatori di sicurezza
Informazioni sulla sicurezza di rete Registrar Integrity Alert
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Latest Classified Outcome 2026-08-07 02:42:16 UTC
Casino / Gambling License Verification
Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo