Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@gen.xyz.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
tr[.]madridbet-2026guvenligiris[.]icu
tr.madridbet-2026guvenligiris.icu — Non verificato. Tipo di truffa: Generic Phishing. Riepilogo delle prove: VirusTotal 5/91 (CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, SOCRadar); URLQuery 1 alert; Spamhaus DBL_PHISH; PhishDestroy score 71/100. Registrar: NiceNIC.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain, tr.madridbet-2026guvenligiris.icu, is assessed as a malicious site based on available data. The domain name and structure, incorporating "madridbet" and "guvenligiris" (Turkish for secure login), strongly indicate it is a phishing or scam site designed to impersonate the Madridbet online gambling brand. The threat posed is credential theft or account compromise, targeting users attempting to access a fraudulent secure login portal.
Technical evidence confirms the threat. VirusTotal reports 3 detections out of 95 security vendors, with flags from Forcepoint ThreatSeeker, Fortinet, and LevelBlue. The domain is listed on 1 blocklist. It is registered with NICENIC INTERNATIONAL GROUP CO., LIMITED, created on 2026-06-23, and resolves to IP address 188.114.97.3. Nameservers are augustus.ns.cloudflare.com and emerie.ns.cloudflare.com. SSL certificate details were not provided.
The domain status is ACTIVE, and the DOM risk score is 78, indicating a high risk. The site poses a current threat to users seeking the legitimate Madridbet service. Immediate caution is advised against accessing or interacting with this domain.
Informazioni sulla sicurezza di rete Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | tr.madridbet-2026guvenligiris.icu |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ZONA SHORTDOT · PROVE PUBBLICHE
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Registration: madridbet-2026guvenligiris.icu
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain madridbet-2026guvenligiris.icu behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-20 02:47:46 UTC
Casino / Gambling License Verification
Analisi di VirusTotal
Dati e relazioni esterne
PD-20260624-6FD08C Recipient: abuse@gen.xyz Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo