Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
enroll-rb88[.]com
“rb88体育app下载 | rb88注册开户与走地黄入口”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
This domain, enroll-rb88.com, is actively engaged in credential harvesting phishing operations targeting users of a sports betting platform. The site presents itself as an official download portal for a mobile application and account registration service, using localized language (Chinese) to appear legitimate. Visitors are likely to encounter fake login forms or prompts to enter sensitive account details, which are then captured by threat actors for unauthorized access or financial fraud. Analysis indicates the domain was registered on June 22, 2026, through the registrar Gransy, s.r.o., an entity frequently associated with high-risk domains. As of the latest scan, only 2 out of 95 security vendors on VirusTotal have flagged the domain as malicious, suggesting either recent deployment or evasion techniques to avoid detection. The site resolves to the IP address 118.107.27.52 and uses a Let's Encrypt SSL certificate, which provides an appearance of security while masking its fraudulent intent. Additional threat intelligence confirms its presence in one AlienVault OTX pulse, further corroborating its malicious classification. If you or someone in your organization has visited enroll-rb88.com, immediate action is required. Disconnect the affected device from the network to prevent potential data exfiltration. Reset any credentials entered on the site, particularly those related to financial services or email accounts. Monitor linked accounts for unauthorized transactions or login attempts. Report the incident to your internal security team or a trusted cybersecurity professional for further analysis, including checking for malware or backdoors that may have been installed during the visit.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260630-7FE674- Заголовок сохранённой страницы
- Problem loading page
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
8 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено 4 технологии с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of enroll-rb88.com · checked Jun 30, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание