vorbet[.]top
“VORBET | Play at the best online casino based on Blockchain”
vorbet.top — Контент недоступен (HTTP 502). Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 4/95 (Seclookup, SOCRadar); URLQuery 100 det.; PhishDestroy score 100/100. Регистратор: Web Commerce Communica….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, vorbet.top, was registered on March 8 2025 through Web Commerce Communications Limited and is presently taken offline. DNS resolution points to the IPv4 address 69.5.189.54, which belongs to AS42624 (Global-Data System IT Corporation) headquartered in Switzerland. The domain is served by four nameservers—ns1.nameserverhub.com, ns2.nameserverhub.com, ns3.nameserverhub.com, and ns4.nameserverhub.com—yet no TLS certificate is presented, indicating that HTTPS connections are not supported. The page title observed during the brief online period reads “VORBET | Play at the best online casino based on Blockchain,” and the site has been classified as employing the Gambler Scam phishing kit and a Crypto Scam lure.
Reputation metrics are extremely low; Gridinsoft assigns a trust score of 1 out of 100, and the domain appears on a single security blocklist. VirusTotal analysis shows that four of ninety‑five scanners flagged the domain, confirming malicious intent without indicating a consensus. PhishDestroy has already blocked the host. Given the combination of a low trust score, lack of encryption, association with a known gambling‑related phishing kit, and partial detection by multiple AV engines, defenders should treat any traffic to vorbet.top as hostile.
Network sensors should drop or quarantine connections to the IP 69.5.189.54, and DNS filtering should be configured to block the domain and its four authoritative name servers. Endpoint protection should be updated to include the four VirusTotal detections, and threat‑intel feeds should be enriched with the registrar and ASN details to improve correlation. Because the site is offline, active payload capture is not possible, but continuous monitoring of the hosting infrastructure is advisable in case the operator redeploys the site under a new sub‑domain or IP range.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание