86269[.]xyz
“welcome-BET365”
86269.xyz — Contenu indisponible. Usurpation de l'identité de la marque : Bet365; Type d'arnaque : Crypto Gambling. Résumé des preuves: VirusTotal 16/93 (Criminal IP, alphaMountain.ai, Cluster25, CRDF, CyRadar); URLScan malicious verdict; PhishDestroy score 95/100. Bureau d’enregistrement: Gname.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
86269.xyz is a newly registered domain (created 08 Jan 2026) that presents the page title “welcome‑BET365”. The title, together with the explicit brand target “Bet365”, shows that the site attempts to impersonate the online betting service. Registration was performed through Gname.com Pte. Ltd., and the domain resolves to the IPv4 address 45.196.247.160, which is announced by AS140224 (Nebula Global LLC) and geolocated to Hong Kong. The site was taken offline before this report, but historical data indicate that it was flagged by multiple security products: sixteen of ninety‑three VirusTotal scanners reported it as malicious, Gridinsoft assigned a trust score of 0 / 100, and Scamadviser also rated it 0 / 100.
The domain appears on one public blocklist and has been specifically blocked by PhishDestroy. An AlienVault OTX pulse references the domain in a single threat‑intel feed. The SSL certificate is identified as “R12”, which typically denotes a self‑signed or low‑trust certificate, further reducing confidence in the site’s legitimacy. The scam type is listed as “Crypto Gambling”, suggesting that any remaining infrastructure may have been used to lure victims into depositing cryptocurrency under the guise of Bet365 betting.
Because the domain is currently offline, immediate traffic to the host is unlikely, yet the underlying IP address may be reused for other malicious campaigns. Defenders should add 86269.xyz and its resolving IP 45.196.247.160 to blocklists at the perimeter, enforce DNS filtering that drops requests to the domain, and monitor for re‑registration or reuse of the same IP range. Updating intrusion‑detection signatures to include the page title “welcome‑BET365” and the observed SSL fingerprint can improve detection of any future clones. Continuous review of threat‑intel feeds for new pulses referencing the same ASN or registrar is advised to catch related campaigns early.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse forensique
Casino / Gambling License Verification
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif