16574[.]xyz
“welcome-BET365”
Rilevamento memorizzato
Avviso di cloaking
- Tipo di cloaking
status_split- Punteggio di cloaking
- 3/6
Riepilogo delle prove
This domain, 16574.xyz, is flagged as an active fake login phishing portal designed to harvest user credentials. Analysis indicates the threat type is credential theft, where attackers replicate legitimate login interfaces to deceive victims into submitting sensitive information. The risk level is elevated due to confirmed malicious activity and infrastructure supporting phishing operations. Infrastructure analysis reveals the following technical indicators: 17 out of 95 security vendors on VirusTotal detect this domain as malicious. It was registered on May 17, 2026, through Dynadot Inc, a registrar frequently associated with phishing domains. The domain resolves to the IP address 103.27.177.164, which has been linked to other suspicious activities. The SSL certificate is issued by Let's Encrypt, a common choice for threat actors due to its free and automated issuance process. No additional blocklists or trust scores are currently available, but the existing detections and registrar history corroborate the elevated risk assessment. Mitigation steps for this specific threat type include immediate blocking of the domain 16574.xyz and its resolving IP 103.27.177.164 at the network perimeter. Organizations should deploy email filtering rules to quarantine messages containing links to this domain. End-users should be educated on recognizing fake login portals, particularly those with mismatched URLs or urgent authentication requests. Multi-factor authentication (MFA) should be enforced to mitigate the impact of credential theft. Security teams are advised to monitor for any attempts to access this domain within their networks and investigate potential compromises linked to this phishing campaign.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260704-16F74B- Titolo della pagina acquisita
- welcome-BET365
- Artefatto PDF
- Prova in PDF
Base giuridica
Testo completo delle prove
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 12/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie
5 tecnologie identificate con alta affidabilità
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo