galabet-gunceladresin2026[.]com
“galabet-gunceladresin2026.com”
galabet-gunceladresin2026.com — 隐形 · 可达. 诈骗类型:Crypto Gambling. 证据摘要: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLQuery 7 alerts; CF Radar malicious; cloaking observed; PhishDestroy score 100/100. 注册商: DYNADOT.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Domain galabet-gunceladresin2026.com has been confirmed as an active crypto drainer phishing site designed to steal cryptocurrency from unsuspecting users. This fraudulent domain impersonates the legitimate brand Galabet, leveraging a deceptive URL structure to trick visitors into connecting malicious cryptocurrency wallets or entering sensitive credentials. The site is part of a growing trend of crypto-draining operations targeting users through fake addresses, fake login portals, or fake transaction interfaces that drain wallets upon interaction. This domain exhibits multiple red flags confirmed by forensic analysis. It was registered on February 05, 2026, through DYNADOT LLC, and resolves to IP address 195.201.179.80. The site carries a Let's Encrypt SSL certificate, giving it a false appearance of legitimacy. VirusTotal reports a detection score of 3 out of 95 security vendors, indicating limited but growing awareness of its malicious nature. The domain remains unblocked in Google Safe Browsing (GSB) as of the latest scan, and its novelty contributes to a low blocklist presence. The use of a recently registered domain (RR=1 day) with a generic top-level domain (.com) and no meaningful content further supports its classification as a crypto drainer. As of the current assessment, galabet-gunceladresin2026.com is active and poses an elevated risk to cryptocurrency users. Immediate user action is advised: avoid visiting the domain, do not interact with any wallet prompts or login forms, and verify the legitimacy of related services before transacting. While this domain has limited vendor coverage, proactive blocking and reporting are strongly recommended to prevent further victimization. The remaining risk is high due to the domain's recent activation and low detection rate, demanding rapid intervention from security teams and domain registrars.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | galabet-gunceladresin2026.com |
malicious | Sinkholed |
| DNS4EU | galabet-gunceladresin2026.com |
malicious | Sinkholed |
| DigiCert UltraDNS | galabet-gunceladresin2026.com |
malicious | Sinkholed |
| Cloudflare DNS | galabet-gunceladresin2026.com |
malicious | Sinkholed |
| DNS4EU | resultearchnow.com |
malicious | Sinkholed |
| DigiCert UltraDNS | l.cdn-fileserver.com |
malicious | Sinkholed |
| DigiCert UltraDNS | s.cdn-fileserver.com |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
所用技术 · 3 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Web platform based on Nginx with LuaJIT for scalable web apps.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of galabet-gunceladresin2026.com · checked Apr 12, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。