Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@namecheap.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
galabetonline[.]casino
“Galabet - Galabet”
galabetonline.casino — Непроверенный. Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 18/91 (ADMINUSLabs, AILabs (MONITORAPP), alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 2 alerts; CF Radar malicious; PhishDestroy score 95/100. Регистратор: NameCheap.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy identifies galabetonline.casino as an active fraudulent platform impersonating the legitimate online casino brand Galabet. The domain operates under a high-risk threat classification, specifically a generic phishing attack designed to deceive users into disclosing personal credentials or financial details under false pretenses. As of the latest assessment, the site remains online and accessible, continuing to pose significant risks to unsuspecting visitors. This domain was flagged by 2 of 95 VirusTotal security vendors, indicating limited but confirmed malicious detection. It is registered through NameCheap, Inc., resolves to IP address 66.29.148.24, and was created on December 31, 2025. The domain employs a Let's Encrypt SSL certificate to appear legitimate. These technical indicators, combined with the low vendor detection rate and recent domain registration, suggest an emerging but evolving threat actor leveraging time-sensitive domain creation to exploit brand trust. Given its high-risk classification and confirmed malicious indicators, PhishDestroy strongly advises against interacting with galabetonline.casino. Users who have visited the site or entered information should immediately review account activity, change passwords, and monitor financial transactions. Domain blocking and network-level filtering are recommended for organizations and individuals. Report any suspicious encounters to your cybersecurity team or abuse channels such as the Anti-Phishing Working Group (APWG).
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | galabetonline.casino |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | galabetonline.casino |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Технологии · 5 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% уверенностиYoast SEO is a search engine optimisation plugin for WordPress and other platforms.
yoast.com 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of galabetonline.casino · checked May 7, 2026
Анализ конфигурации сайта
Доказательства и внешние отчеты
PD-20260507-980716 Recipient: abuse@namecheap.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание