f234m[.]xyz
“welcome-BET365”
f234m.xyz — Contenido no disponible. Suplantación de marca: Bet365; Tipo de estafa: Crypto Gambling. Resumen de las pruebas: VirusTotal 14 detections (engine total unavailable) (ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, ESET); URLQuery 7 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Registrador: Gname.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This report details the analysis of the domain f234m.xyz, which was identified as a brand impersonation scam targeting Bet365. The domain was created on March 10, 2026, and as of the report date of July 23, 2026, it is confirmed offline. Security scanning on VirusTotal flagged the domain with 14 out of 95 vendors marking it as malicious. The domain resolves to IP address 45.196.247.179, which is hosted in Hong Kong by provider AS140224 Nebula Global LLC. The domain was registered through Gname.com Pte. Ltd. and uses multiple nameservers including ns1.1111343.com, ns1.dnsbm.com, ns2.1111343.com, ns2.dnsbm.com, ns3.1111343.com, and ns4.
No SSL certificate was detected for this domain. The site was built using Vue.js and Nginx with HSTS enabled. The page title found was 'welcome-BET365', confirming the impersonation of the Bet365 brand. The scam type is classified as Crypto Gambling, indicating the fraudulent site likely promoted cryptocurrency-based gambling under the guise of Bet365.
The domain appears on 1 security blocklist and has been blocked by the PhishDestroy service. The exact content of the landing page has not been visually confirmed, but the technical indicators strongly suggest a phishing operation designed to deceive users into engaging with fake gambling services. Defenders should ensure this domain remains blocked and monitor for related subdomains or similar registration patterns. Users should avoid any interaction with the domain and report any communications referencing it to relevant security teams.
Inteligencia de seguridad de red
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | f234m.xyz |
phishing | Phishing Block |
| Cloudflare DNS | f234m.xyz |
malicious | Sinkholed |
| DigiCert UltraDNS | f234m.xyz |
malicious | Sinkholed |
| Hagezi Threat Feed | f234m.xyz |
malicious | Sinkholed |
| DNS4EU | f234m.xyz |
malicious | Sinkholed |
| Hagezi Threat Feed | img.esportsdata.cc |
malicious | Sinkholed |
| DNS4EU | img.esportsdata.cc |
malicious | Sinkholed |
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Tecnologías · 3 identified
Progressive JavaScript framework for building user interfaces.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of f234m.xyz · checked Mar 10, 2026
Datos y informes externos
PD-20260310-837842 Recipient: complaint@gname.com ¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.