u90c[.]xyz
“welcome-BET365”
u90c.xyz — Контент недоступен (HTTP 502). Олицетворение бренда: Bet365; Тип мошенничества: Crypto Gambling. Сводка доказательств: VirusTotal 21/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLQuery 6 alerts; URLScan malicious verdict; PhishDestroy score 95/100. Регистратор: Gname.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain u90c.xyz has been identified as a brand impersonation site specifically targeting Bet365, a well-known online gambling and sports betting platform. This domain was created on February 21, 2026, and is currently offline after being flagged for phishing activity. The page title 'welcome-BET365' clearly indicates an attempt to deceive users into believing they are accessing a legitimate Bet365 welcome page.
Technical analysis reveals that the domain was registered through Gname.com Pte. Ltd., and it resolves to the IP address 45.196.247.26. Alarmingly, VirusTotal data shows that 21 out of 95 security vendors have flagged this domain as malicious, indicating a high level of consensus among security tools. The domain also appears on one security blocklist and is listed in one AlienVault OTX threat intelligence pulse. Notably, the site lacks an SSL certificate, which further undermines any appearance of legitimacy.
Given that u90c.xyz is now offline, the immediate risk of compromise is reduced, but users should remain vigilant. The PhishDestroy platform recommends that users who may have visited this domain or entered any personal information should change their passwords immediately and monitor their accounts for suspicious activity. Always verify URLs directly through official Bet365 channels and never trust unsolicited links claiming to offer promotions or welcome bonuses.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | u90c.xyz |
phishing | Phishing Block |
| Cloudflare DNS | u90c.xyz |
malicious | Sinkholed |
| DigiCert UltraDNS | u90c.xyz |
malicious | Sinkholed |
| Hagezi Threat Feed | u90c.xyz |
malicious | Sinkholed |
| DNS4EU | u90c.xyz |
malicious | Sinkholed |
| DNS4EU | img.esportsdata.cc |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Casino / Gambling License Verification
Анализ VirusTotal
Доказательства и внешние отчеты
PD-20260214-5FA5A2 Recipient: complaint@gname.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание