m[.]1455bets10[.]cc
“BAHİS EĞLENCESİNE CEBİN DOLU BAŞLA – Bets10 Kampanyalar”
m.1455bets10.cc — Conteúdo indisponível (HTTP 502). Representação da marca: Instagram; Tipo de golpe: Crypto Gambling. Resumo das evidências: VirusTotal 9/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 77/100. Registrador: Gname.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of m.1455bets10.cc shows a high‑confidence brand‑impersonation campaign targeting Instagram users. The domain was registered on October 08, 2025 via Gname.com Pte. Ltd. and resolves to IP address 216.225.193.171, which belongs to AS8560 IONOS SE and is geolocated in the United States. Nameserver records point to a4.share-dns.com and b4.share-dns.net, typical of fast‑flux or shared hosting services. No TLS certificate is presented, indicating the site was served over plain HTTP only.
The only visible content, captured before takedown, is the page title "BAHİS EĞLENCESİNE CEBİN DOLU BAŞLA – Bets10 Kampanyalar," which aligns with a crypto‑gambling narrative and does not reference Instagram directly, but the campaign metadata lists Instagram as the impersonated brand. VirusTotal scans flagged the domain on nine of ninety‑five engines, and a Gridinsoft trust score of 0 / 100 reinforces the malicious classification. The domain appears on a single external security blocklist and has been actively blocked by the PhishDestroy network, after which it was taken offline. While the exact phishing page layout and credential‑harvesting mechanisms are not publicly documented, the combination of brand impersonation, malicious hosting, and low trust scores indicates a credible threat.
Defenders should continue to block the domain and associated IP, monitor for any re‑registration attempts, and enforce URL filtering for the host. Network traffic to 216.225.193.171 should be scrutinized for outbound connections that may indicate ongoing crypto‑gambling malware. Incident response teams receiving reports of Instagram‑related credential theft should consider this indicator as part of their IOC set, and users should be warned that any unsolicited links purporting to offer Instagram services from this domain are malicious.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Casino / Gambling License Verification
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo