p116t[.]xyz
“welcome-BET365”
p116t.xyz — İçerik kullanılamıyor (HTTP 502). Marka kimliğine bürünme: Bet365; Dolandırıcılık türü: Crypto Gambling. Kanıt özeti: VirusTotal 15/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 95/100. Kayıt kuruluşu: Gname.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Analysis of p116t.xyz indicates a confirmed brand impersonation targeting Bet365, classified as a crypto gambling scam. The domain was registered on January 14, 2026, through Gname.com Pte. Ltd. and resolved to IP address 103.233.249.125, hosted on AS132839 (POWER LINE DATACENTER) in Hong Kong. No SSL certificate was detected, increasing exposure to interception risks. The page title, 'welcome-BET365,' explicitly aligns with the reported scam type, reinforcing its fraudulent intent.
Infrastructure analysis reveals the domain used nameservers A.SHARE-DNS.COM and B.SHARE-DNS.NET, a pattern observed in other high-risk gambling impersonation schemes. At the time of assessment, the domain was offline, though its prior activity triggered detections from 15 of 93 security vendors on VirusTotal, alongside a single blocklist entry by PhishDestroy. Gridinsoft assigned a trust score of 0/100, further corroborating its malicious classification. Defenders should treat this domain as a high-confidence threat indicator for Bet365-related fraud.
The combination of offshore hosting, absence of encryption, and explicit brand misuse in the page title provides concrete evidence of intent. While the domain is currently inactive, historical resolution data and detection patterns suggest it may resurface under altered infrastructure. Monitoring for re-registration or DNS changes is recommended, particularly within the identified hosting provider and nameserver clusters.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Adli İstihbarat
Casino / Gambling License Verification
VirusTotal Analizi
Kanıtlar ve Dış Raporlar
PD-20260122-6880C0 Recipient: complaint@gname.com Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin