セキュリティレポートへ移動
⚠️
このドメインは悪意のあるものとして報告されています
検出を報告するセキュリティ エンジン: 17。 細心の注意を払ってください — 資格情報や個人情報を入力しないでください。
ドメインのセキュリティと脅威インテリジェンス

w41s[.]xyz

“welcome-BET365”

脅威の評決 クリティカル 95/100 証拠スコア
可用性 コンテンツが利用できません 最新の観測ではコンテンツが利用できませんでした
VirusTotal 検出数: 17/95 ブランドの偽装: Bet365
OTX: 15 refs 2025年12月13日 Bet365
レポート概要

w41s.xyz — コンテンツが利用できません (HTTP 502). ブランドの偽装: Bet365; 詐欺タイプ: Crypto Gambling. 証拠の概要: VirusTotal 17/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 100 det.; PhishDestroy score 95/100. レジストラ: Gname.

元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。

証拠の概要
重要
Ref
2A4C3D3C
スコア
95/100

This domain, w41s.xyz, poses a brand impersonation threat designed to deceive users into believing they are interacting with the legitimate Bet365 platform. The site mimics the appearance and branding of Bet365, a well-known online betting service, to trick visitors into entering sensitive credentials, financial details, or other personal information. Such impersonation attacks are commonly used to facilitate fraud, unauthorized transactions, or identity theft, with victims often unaware of the compromise until after financial or data loss occurs. Analysis indicates that w41s.xyz was registered on December 03, 2025, through Gname.com Pte. Ltd., a registrar frequently associated with high-risk domains. The domain resolves to the IP address 45.196.247.172, located in Hong Kong under AS140224 (Nebula Global LLC), an autonomous system with a history of hosting malicious infrastructure. At the time of assessment, the domain was offline, though this does not eliminate the risk of reactivation. The page title, 'welcome-BET365,' further confirms its intent to impersonate the Bet365 brand. Security vendors on VirusTotal flagged the domain at a ratio of 17/95, and it appears on two independent security blocklists, including PhishDestroy and PhishingDB. Notably, the domain lacks an SSL certificate, a red flag for users accustomed to secure connections on legitimate platforms. Users who visited w41s.xyz or interacted with its content should take immediate action to mitigate potential risks. First, cease all interaction with the domain and avoid entering any credentials or personal information. If any login details, payment information, or other sensitive data were submitted, reset passwords for the affected accounts and enable multi-factor authentication where available. Monitor financial statements and transaction histories for unauthorized activity, and report any suspicious findings to the relevant financial institution. Additionally, scan the device used to access the domain for malware or unauthorized software, as impersonation sites may distribute malicious payloads. Organizations should update their security controls to block the domain and its associated IP address (45.196.247.172) at the network level to prevent further exposure.

VirusTotal
VirusTotal
17 det.
URLQuery
URLQuery
100 det.
OTX references
年齢
9 mo
観測ステータス
コンテンツが利用できません 502
PhishDestroy
DestroyList
掲載あり
データの網羅性 VirusTotal 17 / 95 URLQuery 100 det. PhishStats checked — no match recorded OTX 15 community references CFレーダー scan completed URLScan capture 保存されたレポート URLScan verdict 判定なし DNSブロック チェックされていない TLS 証明書データなし WHOIS 9 mo old スクリーンショット 2 captures · 2 sources リダイレクトチェーン 調査されていない

脅威対応 Pipeline

ディスカバリー
Checks
Reports
可用性
13/14

公開ブロックリスト登録状況

保存済みキャプチャ

ページタイトル
welcome-BET365

ドメイン・インテリジェンス

ドメイン
サーバー / ASN Nginx · AS140224 NEBULA, US
IPレピュテーション abuse score 0/100 0 reports checked 2026年6月17日
レジストラ Gname SG(SG)
不正利用連絡先complaint@gname.com
ICANNレジストリICANN公認レジストラ →
IPアドレス 45.196.247.172 HK
地域HK Hong Kong, HK
ネットワークAS140224 · Nebula Global LLC
登録情報作成日 2025年12月3日 (255d)
HTTPステータス502 Error
初回利用不能までの時間 72 days
集計対象 最初に保存された不正使用レポートから、コンテンツが利用できないことが最初に観察されるまでの経過時間。これでは原因は特定されません。
各レポートの内容 保存された送信レポートの記録は、ベンダーの評決、登録データ、ホスティングの詳細、分類、スクリーンショットなど、その時点で入手可能な証拠を参照する場合があります。このページは、配信された正確なペイロード、受信者による受信、確認、またはアクションを推測するものではありません。
技術的な詳細DNS、SSL SAN、タイムスタンプ
初確認2025年12月13日
DOM Analysisanalyzed 2026年3月24日score 0/100
IoC Extractionscanned 2026年8月2日0 wallet · 0 Telegram IoCs
Submitted URLhttp://w41s.xyz/
ネームサーバーns1.1111343.comns1.dnsbm.comns2.1111343.comns2.dnsbm.comns3.1111343.comns4.1111343.com
TLS Observationvalid from 2025年12月6日scanned 2026年3月26日
ICANN OVERSIGHT

認定と RAA の背景

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft 自動送信は一切行われません。
Casino / Gambling License Verification
Unverified gambling license
This domain markets casino/gambling services. Scam casinos routinely display fake Curaçao, MGA, or Kahnawake license badges that don’t exist in the real registries. Always verify the license number against the official regulator database before depositing. If the site shows a seal but no clickable registry link — or the linked registry page doesn’t exist — treat it as fraudulent.
Curaçao eGaming (official) Malta Gaming Authority UK Gambling Commission PA Gaming Control Kahnawake Gaming Gibraltar Gambling
このドメインを報告する 証拠を提出し、他の人を守る手助けをしましょう

VirusTotalによる分析

17 / 95 セキュリティ ベンダーがこのドメインにフラグを立てました
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Lionic
Phishing Database
Seclookup
SOCRadar
ソフォス
VIPRE
Webroot

証拠および外部報告書

このサイトによって何か影響を受けましたか?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。

ユーロポール
EU 加盟国の公式報告チャネルを見つける
National police directory
復旧を装った詐欺に注意! 犯罪者は、捜査員、弁護士、または回収業者を装い、被害者に再び連絡を取る可能性があります。 前払い料金を支払ったり、資格情報を共有したりしないでください。 回復詐欺について詳しくはこちら →

お住まいの地域の当局へ報告してください

サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。

97か国のディレクトリ
AI 支援ドラフト — インシデントの詳細は AI プロバイダーによって処理されます 自分で確認して送信する

任意のドメインを確認する

保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析

今すぐスキャン

フィッシングを報告する

不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう

レポート

リアルタイム脅威情報フィード

最近のフィッシングレポートと観察された可用性の変化

監視

最新情報を入手し、安全を確保しましょう

リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください

リアルタイム脅威情報フィード この掲載情報について異議を申し立てる
HTML · IFRAME

このレポートを埋め込む

この脅威情報を、ご自身のウェブサイトやブログで共有してください

embed.html
<iframe
  src="https://phishdestroy.io/ja/embed/domain/w41s.xyz"
  title="PhishDestroy threat report for w41s.xyz"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

たいへん心のこもった感謝状

風刺的な下書き生成ツール

宛先
手数料の背景

風刺的な下書きです。手数料額は推計であり、このドメインに正確に帰属すると主張するものではありません。