84376[.]xyz
“welcome-BET365”
84376.xyz — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Bet365; Jenis penipuan: Crypto Gambling. Ringkasan bukti: VirusTotal 15/93 (Criminal IP, alphaMountain.ai, CyRadar, ESET, Forcepoint ThreatSeeker); URLScan malicious verdict; PhishDestroy score 100/100. Registrar: Gname.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Analysis of the domain 84376.xyz, reported on July 23, 2026, confirms it was a phishing site designed to impersonate the Bet365 brand. The domain was created on February 21, 2026, and had a page title of 'welcome-BET365'. It was flagged by 15 out of 93 security vendors on VirusTotal, indicating broad detection across the security community. AlienVault OTX documented the domain in one threat intelligence pulse, and it appeared on one security blocklist. PhishDestroy had blocked the domain.
Trust scores were very low, with a Scamadviser trust score of 1/100 and a Gridinsoft trust score of 0/100. The domain was registered through Gname.com Pte. Ltd. and resolved to IP address 45.119.97.37, hosted in the United States on ASN 133861 (SonderCloud Limited). The nameservers used were a.share-dns.com, a3.share-dns.com, b.share-dns.net, and b3.share-dns.net. The SSL certificate was absent.
The scam type associated with this domain was Crypto Gambling, suggesting the phishing infrastructure was used to harvest credentials or payment information from users seeking gambling services. The domain is currently taken offline, but defenders should monitor for similar domains registered through Gname and hosted on SonderCloud infrastructure, particularly those using the share-dns nameservers and targeting Bet365. No Safe Browsing status was provided, and the exact web content was not analyzed, only the page title indicated the impersonation. Defenders should block or monitor this IP and associated infrastructure for future threats.
Sinyal Keamanan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Intelijen Forensik
Casino / Gambling License Verification
Analisis VirusTotal
Bukti & Laporan Eksternal
PD-20260125-44BDAD Recipient: complaint@gname.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive