protonbet[.]net
“Protonbet: Most Popular Online Crypto Casino Based on Blockchain”
protonbet.net — Контент недоступний (HTTP 502). Уособлення бренду: Genericcrypto; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, Bfore.Ai PreCrime, BitDefender, CRDF); URLQuery 4 alerts; URLScan malicious verdict; PhishDestroy score 92/100. Реєстратор: CNOBIN INFORMATION TEC….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of protonbet.net shows a newly registered site created on April 25, 2026 that is currently taken offline. The domain resolves to the Cloudflare address 104.21.65.27, hosted in the United States under ASN 13335 (Cloudflare, Inc.). The authoritative nameservers are jose.ns.cloudflare.com and katja.ns.cloudflare.com, and the site presents a TLS certificate issued by Let’s Encrypt (E7), indicating a valid HTTPS configuration. The page title returned by the server is “Protonbet: Most Popular Online Crypto Casino Based on Blockchain,” which aligns with the listed scam type of brand impersonation and the “Gambler Scam” phishing kit.
Registration details list CNOBIN INFORMATION TECHNOLOGY LIMITED as the registrar. The domain has been flagged by multiple defensive sources: Gridinsoft assigns a trust score of 0 / 100, PhishDestroy has blocked the domain, and it appears on one additional security blocklist. VirusTotal reports 14 of 91 scanning engines flagging the domain as malicious, reinforcing the suspicion of fraudulent activity. Despite the presence of a valid SSL certificate, the low trust score, blocklist presence, and detection count indicate a high probability that the site was deployed to harvest credentials or funds from users seeking crypto‑casino services.
Uncertainty remains around the current operational status of any associated backend infrastructure because the site is offline at the time of analysis. Defenders should continue to block protonbet.net at perimeter firewalls and DNS filtering, monitor for any future re‑hosting of the domain, and update threat intelligence feeds with the observed indicators (IP address, nameservers, SSL fingerprint, and kit reference). Ongoing observation of Cloudflare‑assigned IP ranges for similar brand‑impersonation patterns is also recommended.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | protonbet.net |
phishing | Phishing Block |
| Quad9 DNS | protonbet.net |
malicious | Sinkholed |
| Hagezi Threat Feed | protonbet.net |
malicious | Sinkholed |
| DNS4EU | protonbet.net |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260618-D7C6CF Recipient: abuse@ordertld.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога