xget[.]bet
“Xget: Most Popular Online Crypto Casino Based on Blockchain”
xget.bet — Encoberto · alcançável (HTTP 502). Representação da marca: Genericcrypto; Tipo de golpe: Crypto Gambling. Resumo das evidências: VirusTotal 5/94 (G-Data, URLQuery); URLQuery 1 alert; URLScan malicious verdict; cloaking observed; PhishDestroy score 78/100. Registrador: PDR.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies xget.bet as an active cryptocurrency drainer phishing domain under current investigation. This domain mimics legitimate crypto service portals to trick users into connecting fraudulent wallet drainers, potentially resulting in asset theft. No specific brand impersonation has been confirmed at this stage, but the domain's registration and infrastructure suggest a focus on crypto-related lures. Initial analysis indicates the use of a drainer kit designed to harvest private keys and seed phrases from unsuspecting victims. This domain was flagged with a VirusTotal detection score of 5 out of 95 engines as of the latest scan, indicating zero current detection despite its malicious intent. It resolves to IP address 172.67.137.154 and is registered through PDR Ltd. d/b/a PublicDomainRegistry.com. The domain was created on March 25, 2026, and secured with a Let's Encrypt SSL certificate, adding a veneer of legitimacy. At present, this domain is not flagged by Google Safe Browsing and has not been listed on any major threat intelligence blocklists. The current status of xget.bet remains active, with ongoing monitoring by PhishDestroy and allied SOC teams. Immediate defensive actions include blocking the domain and associated IP at the network perimeter, flagging the SSL certificate for revocation where feasible, and distributing indicators of compromise to trusted partners. While the initial risk remains classified as under_investigation due to the low detection rates and fresh registration, the combination of cryptocurrency targeting, drainer infrastructure, and absence of detection signals elevated concern. Users are strongly advised to avoid interacting with xget.bet and report any observed connections or wallet compromise to their security teams. Additional forensic evidence is being collected to refine classification and accelerate defensive response.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | xget.bet/api/extra/pixel |
malware | Detects file containing Telegram Bot API |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Análise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of xget.bet · checked Apr 5, 2026
Evidências e relatórios externos
PD-20260404-828DAB Recipient: abuse@publicdomainregistry.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo