# h98z.xyz — MALICIOUS > Discover if h98z.xyz is safe or a phishing threat. Learn about its high-risk status and why it was taken offline after targeting users with fake BET365 pages. ## Summary PhishDestroy identifies h98z.xyz as a high-risk generic phishing domain. The site was designed to deceive users by mimicking a well-known betting platform, indicated by the page title "welcome-BET365." This tactic is commonly used to steal login credentials or personal data. The domain was registered recently on February 20, 2026, via Gname.com Pte. Ltd. It resolved to the IP address 45.196.247.27 and appeared on one security blocklist. Additionally, it was detected in one AlienVault OTX threat intelligence pulse. VirusTotal flagged it with 13 out of 95 security vendors recognizing malicious behavior, reinforcing the suspicion of phishing activity. Currently, h98z.xyz is offline, limiting further risk to users. PhishDestroy recommends avoiding this domain and similar suspicious sites. Users should remain vigilant when entering credentials on unfamiliar domains and rely on trusted security tools to verify site legitimacy. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 0) - Page title: welcome-BET365 ## Domain Intelligence - Registered: 2026-02-20 08:20:55 - Registrar: Gname.com Pte. Ltd. - Country: SG - IP: 45.196.247.27 - Nameservers: ["NS1.1111343.COM", "NS2.1111343.COM", "NS3.1111343.COM", "NS4.1111343.COM"] - SSL Issuer: R12 ## Detection Status - VirusTotal: 13 vendors flagged Vendors: ["alphaMountain.ai", "CRDF", "CyRadar", "ESET", "Emsisoft", "Forcepoint ThreatSeeker", "Fortinet", "Gridinsoft", "Netcraft", "Seclookup", "SOCRadar", "Trustwave", "Webroot"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019c8ef1-39f1-733b-a9c8-df1b45b42358.png - Cloudflare Radar: https://radar.cloudflare.com/scan/a3c4ac27-1a3c-4d70-a81f-bd8744e85f31 - PhishDestroy: https://phishdestroy.io/domain/h98z.xyz/ - LLM endpoint: https://phishdestroy.io/domain/h98z.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/h98z.xyz/ Last updated: 2026-03-19