galabet.adresii[.]vip
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of galabet.adresii[.]vip
This website appears to present itself as a Turkish-language landing page for "Galabet Casino 2026," promoting updated access information, login guidance, sports betting, casino content, and bonus offers. The page text emphasizes a "current address" and uninterrupted access, which suggests it may function as a gateway or referral page for an online gambling platform rather than a full standalone service.
Based on the visible content, the site appears aimed at users seeking access to a betting or casino brand called Galabet. The homepage highlights promotional claims such as a welcome bonus, game counts, payment references, and account access buttons. The domain itself uses a subdomain under adresii.vip rather than a primary branded domain, and no clear operator identity is visible in the provided scan data, so the actual ownership and operating entity are not readily verifiable from this snapshot alone.
Safety Assessment for galabet.adresii[.]vip
The scan results indicate elevated risk signals at the time of this scan. Multiple web-classification providers categorized the site as phishing or fraud-related, and 13 out of 92 security engines flagged the domain, with most of those detections describing phishing-related behavior. In addition, the domain is extremely new at only 2 days old, has no established traffic ranking, and uses a structure commonly seen on short-lived redirect or access-update pages.
At the same time, the malware scan did not identify malicious files on the page snapshot that was analyzed, and the checked blacklist sources in this dataset did not report active listings. That combination can occur when a site is focused on credential harvesting, deceptive redirection, or brand-linked access lures rather than delivering obvious malware payloads.
The page content itself also raises concern because it promotes a "current address" for a gambling platform and encourages immediate login through a newly created, low-reputation domain. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The domain is very newly registered, created on 2026-05-13 through Dynadot, and at the time of this scan it was fronted by Cloudflare infrastructure with an IP address of 172.67.193.144 and nameservers on Cloudflare. The site presents a valid Let's Encrypt certificate expiring on 2026-08-11, which indicates HTTPS is enabled, although a valid certificate alone does not establish legitimacy.
DNSSEC appears to be unsigned, and the scan data does not provide a confirmed application protocol beyond the presence of TLS. No malicious files, flagged outbound links, or iframes were identified in the page-level malware scan snapshot, but the combination of very recent registration, phishing-oriented detections from multiple security engines, and use of a branded gambling access page on a disposable-looking subdomain are notable technical risk indicators.
Share your experience with this website. Was it safe? Did you encounter any issues?