m[.]2666[.]uk
“bet365”
m.2666.uk — Conteúdo indisponível. Representação da marca: Bet365; Tipo de golpe: Crypto Gambling. Resumo das evidências: VirusTotal 14/93 (ADMINUSLabs, BitDefender, CRDF, CyRadar, ESET); PhishDestroy score 92/100. Registrador: Dynadot.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, m.2666.uk, is identified as a brand impersonation threat specifically targeting Bet365, a well-known online betting platform. Analysis indicates the site replicates Bet365’s branding and page structure, including the use of 'bet365' as the page title, to mislead users into believing they are interacting with the legitimate service. No crypto drainer kit or credential theft script was explicitly observed in the available data, but the impersonation tactic aligns with common phishing methodologies aimed at harvesting user credentials or financial details. Infrastructure analysis reveals several technical indicators of malicious activity. The domain was registered through Dynadot LLC on December 25, 2025, an unusually future-dated creation that may suggest an attempt to evade detection or a placeholder for future abuse. It resolves to the IP address 118.107.248.72, located in Hong Kong under AS132825 (MYTEK TRADING PTY LTD), an autonomous system with a history of hosting suspicious domains. The domain lacks an SSL certificate, increasing the risk of unencrypted data transmission. Security vendors on VirusTotal flagged m.2666.uk with a detection score of 14/95, and it appears on one security blocklist. No Google Safe Browsing (GSB) data was provided, but the combination of brand impersonation and lack of encryption strongly suggests malicious intent. As of the latest assessment, m.2666.uk has been taken offline, likely due to enforcement actions by security providers or the registrar. However, the domain’s infrastructure remains a residual risk, particularly if the registrant reactivates it or deploys similar domains. Users who accessed the site prior to its takedown should assume potential exposure of login credentials or financial information and take immediate remedial actions, such as password resets and account monitoring. Organizations are advised to proactively block the domain and its associated IP address in network security controls to prevent future access attempts. The elevated risk level persists due to the domain’s registration details and hosting provider, which may facilitate further abuse.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Casino / Gambling License Verification
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo