w65v[.]xyz
“welcome-BET365”
w65v.xyz — Контент недоступен (HTTP 502). Олицетворение бренда: Bet365; Тип мошенничества: Crypto Gambling. Сводка доказательств: VirusTotal 23/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLScan malicious verdict; PhishDestroy score 100/100. Регистратор: Gname.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain w65v.xyz has been identified as a confirmed phishing site specifically designed to impersonate the well-known online gambling platform Bet365. The threat is classified as brand impersonation, with the domain currently taken offline after being flagged by security researchers. The page title found was "welcome-BET365," a clear attempt to deceive users into believing they are accessing a legitimate Bet365 welcome page.
Technical analysis reveals that w65v.xyz was registered through Gname.com Pte. Ltd. on March 04, 2026, and resolves to the IP address 45.196.247.179. The domain appears on one security blocklist and was flagged by 23 out of 95 VirusTotal vendors, indicating a high likelihood of malicious intent. AlienVault OTX also detected the domain in one threat intelligence pulse, confirming its association with phishing campaigns. The SSL certificate (R12) was likely obtained to give the site a false sense of legitimacy. Despite being taken offline, the domain's creation date is remarkably recent, underscoring the rapid deployment of phishing infrastructure.
Given the elevated risk level and the known intelligence pointing to Bet365 impersonation, users are strongly advised to avoid any interaction with w65v.xyz or similar domains. PhishDestroy recommends verifying any Bet365-related URLs through official channels before entering credentials or personal information. If you have already submitted data to this domain, change your Bet365 password immediately and enable two-factor authentication. Stay vigilant against phishing attempts that exploit trusted brand names.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Casino / Gambling License Verification
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание