68147[.]xyz
“welcome-BET365”
68147.xyz — Konten tidak tersedia. Peniruan identitas merek: Google; Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 22/94 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 3 alerts; CF Radar malicious; PhishDestroy score 95/100. Registrar: Gname.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain 68147.xyz was configured to impersonate the Gmail brand, as indicated by its page title "welcome-BET365" and its classification as an email scam. This site posed a threat by attempting to deceive users into believing they were accessing a legitimate Gmail-related service, likely to harvest login credentials or other sensitive information through fraudulent email-themed pages.
Technical evidence shows the site was flagged by 22 out of 95 VirusTotal vendors and was listed on 1 blocklist. It was specifically flagged by ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, and Chong Lua Dao. The domain was registered with Gname.com Pte. Ltd. and created on 2026-03-07. It resolved to IP address 45.196.247.179, located in Hong Kong and assigned to AS140224 Nebula Global LLC. The site used nameservers a.share-dns.com, a11.share-dns.com, b.share-dns.net, and b11.share-dns.net, and had no SSL certificate.
The domain is currently DOWN/OFFLINE and carries a risk score of 73. Despite being offline, the domain's registration details and high detection rate indicate it was part of an active email impersonation campaign.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | 68147.xyz |
malicious | Sinkholed |
| DNS4EU | img.esportsdata.cc |
malicious | Sinkholed |
| Hagezi Threat Feed | img.esportsdata.cc |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Intelijen Forensik
Teknologi · 3 identified
Progressive JavaScript framework for building user interfaces.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of 68147.xyz · checked Mar 15, 2026
Bukti & Laporan Eksternal
PD-20260315-6EF9CE Recipient: complaint@gname.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive