87464[.]xyz
“welcome-BET365”
87464.xyz — Контент недоступен. Олицетворение бренда: Bet365; Тип мошенничества: Crypto Gambling. Сводка доказательств: VirusTotal 17/93 (Criminal IP, alphaMountain.ai, Cluster25, CRDF, CyRadar); URLScan malicious verdict; PhishDestroy score 95/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain 87464.xyz was registered on 21 February 2026 and is currently offline. DNS resolution points to the IPv4 address 45.196.247.146, which belongs to AS140224 Nebula Global LLC and is geolocated in Hong Kong. The host presents an SSL certificate identified as R13, indicating the use of a publicly‑trusted certificate chain. Reputation services flag the domain as highly suspicious: Gridinsoft assigns a trust score of 0 out of 100, and PhishDestroy has actively blocked the host.
VirusTotal reports that 17 of 93 scanned scanners label the domain as malicious, corroborating the broader detection environment. AlienVault OTX references the host in two separate threat‑intel pulses, and a single security blocklist includes the address. The site’s HTML title reads “welcome‑BET365”, matching the declared brand target Bet365 and the reported scam type of crypto‑gambling. This alignment suggests a deliberate brand‑impersonation campaign aimed at luring Bet365 users into a cryptocurrency gambling funnel.
Open questions remain regarding the exact payload delivered, the phishing kit employed, and any command‑and‑control infrastructure beyond the observed IP. Defenders should continue to deny network egress to 45.196.247.146, enforce URL filtering for the host, and monitor for similar domains that resolve to the same ASN. Threat‑intel teams are advised to enrich existing blocklists with the domain and to share the observed indicators with industry peers to improve early detection of related campaigns.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Криминалистическая аналитика
Casino / Gambling License Verification
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание