84738[.]xyz
“welcome-BET365”
84738.xyz — المحتوى غير متوفر. انتحال العلامة التجارية: Bet365; نوع الاحتيال: Crypto Gambling. ملخص الأدلة: VirusTotal 15/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, Cluster25, CRDF); URLQuery 7 alerts; URLScan malicious verdict; PhishDestroy score 95/100.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
The domain 84738.xyz is a confirmed phishing site engaged in brand impersonation targeting Bet365, a well-known gambling platform. It presents itself as a legitimate Bet365 login or promotional page to deceive users into entering credentials or financial details. As of the latest verification, 84738.xyz has been taken offline, but it previously operated as a gambling scam with no associated crypto drainer kit.
Technical indicators confirm the malicious nature of 84738.xyz. The domain was flagged by 15 of 95 security vendors on VirusTotal, including ADMINUSLabs, Criminal IP, and alphaMountain.ai, though Google Safe Browsing did not detect it. It appears on one security blocklist (PhishDestroy) and was created on February 21, 2026. The domain resolved to the IP address 45.196.247.189, hosted in Hong Kong under AS140224 Nebula Global LLC, and used an SSL certificate issued by R13. The observed page title was 'welcome-BET365,' reinforcing its impersonation of Bet365. AlienVault OTX also listed 84738.xyz in two threat intelligence pulses.
Users who interacted with 84738.xyz should immediately change any credentials entered on the site, particularly for Bet365 or linked financial accounts. Enable two-factor authentication (2FA) on all sensitive accounts to prevent unauthorized access. Monitor bank and gambling accounts for unusual activity, such as unauthorized transactions or login attempts. Report the domain to relevant authorities, including the Anti-Phishing Working Group (APWG) at reportphishing@apwg.org, and consider submitting it to Google Safe Browsing or other security platforms to aid in broader protection efforts.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | 84738.xyz |
malicious | Sinkholed |
| OpenDNS | 84738.xyz |
phishing | Phishing Block |
| DigiCert UltraDNS | 84738.xyz |
malicious | Sinkholed |
| Hagezi Threat Feed | 84738.xyz |
malicious | Sinkholed |
| DNS4EU | 84738.xyz |
malicious | Sinkholed |
| DNS4EU | ssl.gfw301.top |
malicious | Sinkholed |
| DNS0 Zero | ssl.gfw301.top |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
Casino / Gambling License Verification
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب