Перейти до звіту про безпеку
⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 14. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
Безпека домену та аналіз загроз

m[.]padisahbet-real[.]vip

“Padişahbet - Padişahbet VIP Bonusları - Padişahbet Resmi Giriş”

Загрозливий вердикт Критичний 95/100 оцінка доказів
Доступність Помилка сервера Остання збережена відповідь була непереконливою
Виявлення VirusTotal: 14/94 Spamhaus DBL: DBL_PHISH URLQuery threat systems: 4 alerts Тип шахрайства: Crypto Gambling
05.03.2026 1 Report Sent CDN
Огляд звіту

m.padisahbet-real.vip — Помилка сервера (HTTP 502). Тип шахрайства: Crypto Gambling. Зведення доказів: VirusTotal 14/94 (BitDefender, Cluster25, CRDF, CyRadar, DNS8); URLQuery 4 alerts; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: NiceNIC.

Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.

Зведення доказів
КРИТИЧНИЙ
Посилання
4F3A26C6
Оцінка
95/100

PhishDestroy has identified the domain m.padisahbet-real.vip as a generic phishing threat, specifically targeting users of the Padişahbet online gambling platform. The site masquerades as a legitimate Padişahbet VIP bonus and official entry page, but is in fact a credential harvesting operation. No specific drainer kit was detected during analysis, but the phishing infrastructure is designed to steal login credentials and potentially financial information from unsuspecting victims.

Technical indicators paint a clear picture of malicious intent. VirusTotal data shows that 14 out of 95 security vendors flag this domain as malicious, a high detection rate that underscores the threat. The domain was registered through NiceNIC International Group Co., Limited, a registrar often associated with low-quality or malicious domains, and resolves to IP address 172.67.138.7, which is part of the Cloudflare network commonly abused by phishers. Created on March 05, 2026, the domain has a very recent registration, typical of phishing campaigns that cycle through domains quickly. It appears on one security blocklist and has been taken offline, though it may have already compromised some users. No SSL certificate was found, meaning any data submitted was transmitted in plain text.

Currently, the domain is offline, indicating that either the hosting provider or a security team has taken action to shut it down. PhishDestroy recommends that users who may have visited this site or entered credentials immediately change their Padişahbet passwords and enable two-factor authentication. Remaining risk is moderate, as the domain is no longer active, but similar phishing variants may appear under different subdomains or TLDs. Users should always verify the official Padişahbet URL and avoid clicking on unsolicited links offering VIP bonuses. Vigilance is key to preventing account compromise.

VirusTotal
VirusTotal
14 det.
URLQuery
URLQuery
4 threat alerts
CF Radar
Шкідливий
URLScan
URLScan
Сертифікат TLS
Let's Encrypt
Вік
6 mo
Зафіксований статус
Помилка сервера 502
PhishDestroy
DestroyList
У списку
Reports Sent
1
Обсяг даних VirusTotal 14 / 94 URLQuery 4 threat-system alerts PhishStats checked — no match recorded OTX no community references CF Radar provider verdict: malicious URLScan capture збережений звіт URLScan verdict Аналіз завершено Блокування DNS 14 перевірено — блокувань немає TLS valid certificate, 88d WHOIS 6 mo old Знімок екрана 3 captures · 3 sources Ланцюжок перенаправлень не досліджено
Розвіддані з мережевої безпеки Registrar context
Threat Detection Systems 4 alerts
Detection System Indicator Verdict Alert
OpenDNS m.padisahbet-real.vip phishing Phishing Block
DNS4EU m.padisahbet-real.vip malicious Sinkholed
Cloudflare DNS m.padisahbet-real.vip malicious Sinkholed
CIRA Canadian Shield DNS m.padisahbet-real.vip malicious Sinkholed
CF Cloudflare Radar Verdict Шкідливий
Phishing Phishing Security threats
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
17/18
Sent Report Recorded
Stored sent-report record for registrar NiceNIC International Group Co., Limited, hosting provider, 1 abuse contact
abuse@nicenic.net
05.03.2026

Статус у публічних блоклистах

Збережений знімок

Заголовок сторінки
Padişahbet - Padişahbet VIP Bonusları - Padişahbet Resmi Giriş
Сертифікат TLS
Valid transport encryption · Виданий Let's Encrypt · valid for 88 days

Аналітика доменів

Домен
URLScan Verdict Аналіз завершено score 0 report ↗
Сервер / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Репутація Edge-IP не пов’язана з цим доменом.
Registrar (base domain) NiceNIC RU(RU) PhishDestroy Investigation
Контакт для скаргabuse@nicenic.net
IP-адреса 172.67.138.7 CDN
ГеолокаціяUS San Francisco, US
МережаAS13335 · Cloudflare, Inc.
Зворотний пошук IPviewdns.info → rapiddns.io →
Початкова IP-адреса прихована за проксі CDN. Результати зворотного IP для крайової адреси містять непов’язаних орендарів; для пошуку джерела потрібен пасивний DNS або дані прозорості сертифіката.
Registration (base domain)padisahbet-real.vip · Створено 05.03.2026 (169d)
Статус HTTP502 Error
Elapsed Since First Report 3 days
Що ми враховуємо Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Помилка сервера.
Що містить кожен звіт Збережені записи вихідних звітів можуть посилатися на докази, доступні на той час, наприклад вердикти постачальників, реєстраційні дані, деталі хостингу, класифікації або знімки екрана. Ця сторінка не визначає точного доставленого корисного навантаження, квитанції, підтвердження чи дії одержувача.
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Вперше виявлено05.03.2026
DOM Analysisanalyzed 29.07.2026score 73/100
IoC Extractionscanned 01.08.20260 wallet · 0 Telegram IoCs
Submitted URLhttp://m.padisahbet-real.vip/
Сервери іменstephane.ns.cloudflare.comweston.ns.cloudflare.com
TLS Observationscanned 15.03.2026
Case ID
ICANN OVERSIGHT Registration: padisahbet-real.vip

Акредитація та контекст RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain padisahbet-real.vip behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Нічого не надсилається автоматично.

Latest Classified Outcome 2026-08-20 12:54:06 UTC

Primary outcome DNS inactive reason: DNS NXDOMAIN 80% confidence
Attribution source: Dns Cache
Evidence layers Availability: DNS inactive Content: Unreachable DNS: NXDOMAIN Registration: Unknown
Latest HTTP observation Невідомий Origin unreachable Http 5xx 20% 2026-08-21 02:38:37 UTC
RDAP registration Невідомий
Observed timeline last reachable: 2026-03-07 00:41:56 UTC current episode first observed: 2026-08-05 01:45:38 UTC observed RIP window: 2026-03-07 00:41:56 UTC → 2026-08-05 01:45:38 UTC · 3,625.06h midpoint estimate ≈ 2026-05-21 13:13:47 UTC · precision very low · basis bounded
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.
Casino / Gambling License Verification
Unverified gambling license
This domain markets casino/gambling services. Scam casinos routinely display fake Curaçao, MGA, or Kahnawake license badges that don’t exist in the real registries. Always verify the license number against the official regulator database before depositing. If the site shows a seal but no clickable registry link — or the linked registry page doesn’t exist — treat it as fraudulent.
Curaçao eGaming (official) Malta Gaming Authority UK Gambling Commission PA Gaming Control Kahnawake Gaming Gibraltar Gambling
Технології · 4 identified
PHP
Programming languages

Server-side scripting language designed for web development.

Cloudflare Browser Insights
Analytics RUM

Performance monitoring tool that measures website speed from real users.

www.cloudflare.com
Cloudflare
CDN

Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.

www.cloudflare.com
HTTP/3
Miscellaneous

Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.

Detected via Cloudflare Radar · Wappalyzer engine
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

14 / 94 постачальників безпеки позначили цей домен
View on VT
Last analyzed
BitDefender
Cluster25
CRDF
CyRadar
DNS8
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
«Касперський»
MalwareURL
SOCRadar
Sophos
VIPRE

Архівні докази

Wayback Machine Snapshot
Для перегляду доказів доступний історичний знімок
View Archive
Аналіз продуктивності сайту

Google PageSpeed Insights — mobile performance audit of m.padisahbet-real.vip · checked Mar 6, 2026

100
Good
Performance
FCP
0.78s
First Contentful Paint
LCP
0.78s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
1.67s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Докази та зовнішні звіти

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260305-7478EF Recipient: abuse@nicenic.net, abuse@mmx.co, compliance@icann.org
Page title stored with report: Padişahbet - Padişahbet VIP Bonusları - Padişahbet Resmi Giriş
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 10.1 KB

Чи вплинув на вас цей сайт?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно

Перевірити будь-який домен

Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування

Сканувати зараз

Повідомити про фішинг

Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту

Повідомити

Потокова стрічка про загрози

Останні звіти про фішинг і помічені зміни доступності

Відстежувати

Будьте в курсі подій, дбайте про свою безпеку

Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога

Потокова стрічка про загрози Оскаржити це оголошення
HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/m.padisahbet-real.vip"
  title="PhishDestroy threat report for m.padisahbet-real.vip"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Дуже щирий лист-подяка

Генератор сатиричних чернеток

Одержувач
Контекст зборів

Це сатирична чернетка. Суми зборів є оцінками; ми не стверджуємо, що вони точно стосуються цього домену.