b239c[.]xyz
“welcome-BET365”
Зведення доказів
Analysis of the domain b239c.xyz indicates that it is a brand impersonation threat targeting the online sports betting platform Bet365. The domain does not utilize an SSL certificate, which is a common characteristic of phishing sites, and is designed to deceive users into believing they are interacting with the legitimate Bet365 website. The threat level is elevated, as the domain impersonates a well-known brand and could lead to significant financial and personal data loss if users are not cautious.
Technical indicators reveal that the domain b239c.xyz is detected by 18 out of 95 security vendors on VirusTotal, suggesting a moderate level of recognition among security tools. The domain is registered through Gname.com Pte. Ltd., a registrar known for facilitating domain registrations. It resolves to the IP address 45.196.247.26, which is located in Hong Kong and is part of the AS140224 network operated by Nebula Global LLC. The domain was created on February 21, 2026, and currently appears on one security blocklist, indicating its involvement in malicious activities. The domain is not listed in the Google Safe Browsing (GSB) database, but this does not diminish its potential threat.
The domain b239c.xyz has been taken offline, which reduces the immediate risk to users. However, the infrastructure and techniques used in this campaign may still pose a threat if similar domains are registered in the future. It is recommended that users remain vigilant and verify the URL of any website they visit, especially those purporting to be from trusted brands like Bet365. Security teams should monitor for similar domain registrations and IP addresses to prevent future incidents. The current offline status of the domain suggests that it has been mitigated, but ongoing monitoring is essential to ensure complete safety.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260126-D26C28- PDF-файл
- PDF із доказами
Повний текст доказів
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | b239c.xyz |
malicious | Sinkholed |
| OpenDNS | b239c.xyz |
phishing | Phishing Block |
| DigiCert UltraDNS | b239c.xyz |
malicious | Sinkholed |
| Hagezi Threat Feed | b239c.xyz |
malicious | Sinkholed |
| DNS4EU | b239c.xyz |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 26.01.2026
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криміналістичні дані
Casino / Gambling License Verification
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога