Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
casebatlle[.]com
“CASE-BATTLE — Официальная Платформа КС2 Кейсов, созданная для настоящих ценителей крутых скинов!”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
The domain casebatlle.com is currently listed on a single security blocklist and is actively blocked by the PhishDestroy feed, indicating that at least one reputable anti‑phishing service has identified it as malicious. VirusTotal scans show that five out of ninety‑one security vendors have flagged the domain, reinforcing the suspicion of malicious intent. An HTTP request to the host returns a 200 OK status, confirming that the site is reachable and serving content. The domain is delegated to Cloudflare name servers (carrera.ns.cloudflare.com and sonny.ns.cloudflare.com), a common choice for threat actors seeking rapid provisioning and DDoS mitigation.
Registration was performed through Global Domain Group LLC, a registrar that does not inherently imply legitimacy or illegitimacy but provides a traceable point of contact for law‑enforcement inquiries. The domain’s status remains active, meaning it continues to host potentially harmful resources. No additional intelligence such as page titles, brand targeting, or SSL certificate details has been disclosed, leaving the exact content and lure technique unverified.
Defenders should treat casebatlle.com as a high‑risk indicator: add the domain to outbound and inbound URL filtering rules, enforce DNS sinkholing or blocklist enforcement at the resolver level, and monitor network logs for any connections to the associated Cloudflare IP ranges. Continuous re‑scanning on VirusTotal and periodic checks against emerging blocklists are advised to capture any changes in the detection landscape. Incident response teams should also consider correlating internal alerts with this indicator to identify compromised credentials or credential‑stealing attempts that may originate from the site.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-1774620906-casebatlle.com- PDF-файл
- PDF с доказательствами
История сообщений 1
- Сообщение № 2 ⚠️ ESCALATION #2 (167h active): Phishing - casebatlle[.]com
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено 5 технологий с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of casebatlle.com · checked Jul 26, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание