72037[.]xyz
“welcome-BET365”
Evidence Summary
The domain 72037.xyz was registered on April 25, 2026 through Gname.com Pte. Ltd. and remains active as of the report date, August 01, 2026. Infrastructure analysis shows that the domain resolves to the IP address 103.244.148.113 and is served by the authoritative nameservers a.share-dns.com, a8.share-dns.com, b.share-dns.net, and b8.share-dns.net. Threat intelligence categorizes the site as a generic phishing operation and assigns a high risk level.
Detection evidence indicates that 14 of 91 security vendors on VirusTotal have flagged the domain as malicious, and it is listed on two security blocklists. Additionally, commercial phishing feed providers PhishDestroy and OpenPhish have both blocked the domain, confirming its presence in active phishing mitigation services. The available data does not include a page title, SSL certificate details, HTTP response codes, or evidence links, leaving the exact content and any payload unverified.
Consequently, defenders should treat 72037.xyz as a high‑confidence phishing indicator, block DNS resolution and HTTP traffic to the domain, and incorporate the IP address 103.244.148.113 into network‑level deny lists. Continuous monitoring for any changes in hosting, additional detections, or new blocklist entries is recommended to maintain up‑to‑date protection.
Submitted Evidence Snapshot
- Sent
- Ledger records
- 1
- Case ID
PD-20260801-586CAF- PDF artifact
- PDF evidence
Full evidence text
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | 19546.xyz |
malicious | Sinkholed |
| DigiCert UltraDNS | 72037.xyz |
malicious | Sinkholed |
| Cloudflare DNS | 72037.xyz |
malicious | Sinkholed |
| OpenDNS | 72037.xyz |
phishing | Phishing Block |
| DNS4EU | 72037.xyz |
malicious | Sinkholed |
| DNS4EU | ssl.hw301.xyz |
malicious | Sinkholed |
| DNS4EU | img.esportsdata.cc |
malicious | Sinkholed |
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 11, 2026
10 monitored external feeds No match
Detection timeline
-
First recorded
First stored value: Reachable
-
Domain status
Reachable → Unreachable
Stored Capture
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
5 high-confidence technologies identified
VirusTotal Analysis
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive