MALICIOUS — CRITICAL
76651166[.]com
This domain, 76651166.com, is identified as a potential site for credential theft.
- VirusTotal
- 14/91
- Blocklists
- No stored match
- Доступність
- Останній відомий активний · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
76651166.com — Останній відомий активний (HTTP 200). Уособлення бренду: Bet365; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Forcepoint ThreatSeeker); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
76651166.com: Potential Credential Theft Site Alert
76651166.com is flagged for credential theft. Analysis reveals it has been flagged by 20 out of 95 security vendors on VirusTotal.
This domain, 76651166.com, is identified as a potential site for credential theft. The domain does not appear to be associated with a specific brand or to use a known drainer kit. However, the threat level is elevated due to the high number of security vendor detections and the domain's offline status, which may indicate it has been taken down due to malicious activity.
Infrastructure analysis reveals that 76651166.com has a VirusTotal score of 20 out of 95, indicating a significant level of detection by security vendors. The domain is registered through GoDaddy.com, LLC, and resolves to the IP address 103.143.28.212, which is located in Hong Kong (AS135581 ONL-HK). The domain was created on August 11, 2018, and is currently listed on one security blocklist. The SSL certificate is issued to Default Company Ltd, which is a common placeholder and may suggest a lack of legitimate identity verification.
The current status of 76651166.com is offline, which could be a result of actions taken by security organizations or the domain owner to mitigate the threat. Despite being offline, the domain remains flagged by PhishDestroy, a security blocklist, indicating that it poses a residual risk. Users are advised to avoid visiting this domain and to ensure that their browsers and security software are up to date to protect against any potential reinfection or related threats. Additionally, organizations should monitor their networks for any attempts to access this domain and consider implementing DNS filtering to block it.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Архівні докази
Аналіз конфігурації сайту
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.