Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@namecheap.com.
The latest stored availability evidence still shows the domain reachable; 24 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
saranbet374[.]com
“Best Crypto Wallet for Web3, NFTs and DeFi | Trust Security”
saranbet374.com — 未验证. 品牌冒充:Trust Wallet; 诈骗类型:Impersonation. 证据摘要: VirusTotal 19/91 (alphaMountain.ai, BitDefender, Cluster25, CRDF, CyRadar); URLQuery 1 alert; URLScan malicious verdict; Spamhaus DBL_SPAM; CF Radar malicious; PhishDestroy score 95/100. 注册商: Namecheap.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain saranbet374.com is currently listed as active and has been observed in a single security blocklist, where it is blocked by the PhishDestroy feed. VirusTotal analysis shows that five of ninety‑five scanning engines have flagged the domain, indicating a modest but non‑trivial detection rate. The domain was registered on 26 August 2025 through Namecheap Inc, a registrar known for high‑volume registrations. Its authoritative name servers are dns1.namecheaphosting.com and dns2.namecheaphosting.com, both typical of Namecheap‑hosted zones.
DNS resolution points to the IPv4 address 158.94.209.40, which is the sole host associated with the domain at the time of this writing. The limited detection footprint suggests that the site may be employing evasion techniques or that it is relatively new, having existed for less than a year. No additional intelligence such as Safe Browsing status, Open Threat Exchange (OTX) entries, SSL certificate details, HTTP response codes, or page metadata has been published, leaving the precise content and targeting vector unverified. Consequently, the exact phishing lure (e.g., credential harvesting, payment redirection) remains uncertain.
Defenders should incorporate the domain into existing URL filtering and DNS sinkhole policies, given its active blocklist status and multiple vendor detections. Continuous monitoring of the IP address 158.94.209.40 for anomalous traffic patterns is advisable, as is periodic re‑scanning on VirusTotal or similar platforms to capture any escalation in detection counts. Organizations using automated threat intel feeds should ensure that the PhishDestroy list is enabled, and SOC analysts should treat any inbound connections to this host as suspicious, triggering further investigation or isolation according to incident‑response playbooks.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | saranbet374.com |
phishing | Phishing Block |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
VirusTotal 分析
存档证据
证据与外部报告
PD-20260721-C71211 Recipient: abuse@namecheap.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。