p113p[.]xyz
“welcome-BET365”
p113p.xyz — Контент недоступний (HTTP 502). Уособлення бренду: Bet365; Тип шахрайства: Crypto Gambling. Зведення доказів: VirusTotal 17/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, Cluster25, CRDF); URLQuery 4 alerts; URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged as an elevated-risk brand impersonation phishing site specifically targeting Bet365, a well-known online gambling platform. The page title 'welcome-BET365' and infrastructure analysis confirm intent to deceive users into believing they are accessing legitimate Bet365 services, likely for credential harvesting or financial fraud. Infrastructure analysis reveals the domain p113p.xyz was registered on January 02, 2026, through Gname.com Pte. Ltd. It resolves to the IP address 45.196.247.189, hosted in Hong Kong under AS140224 (Nebula Global LLC). The domain appears on one security blocklist and is flagged by 17 out of 95 security vendors on VirusTotal. The SSL certificate is classified as R12, indicating low trust or potential misuse. The site was previously blocked by security mechanisms and is now marked as offline. Mitigation steps for this type of threat include immediate blacklisting of the domain and associated IP address in organizational security controls. Network administrators should monitor for connections to 45.196.247.189 and review logs for any prior interactions with p113p.xyz. End-users should be educated on recognizing brand impersonation tactics, particularly in the gambling sector, and encouraged to verify domain authenticity before entering credentials. Organizations should also implement multi-factor authentication to reduce the impact of credential theft from such phishing attempts.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | p115r.xyz |
malicious | Sinkholed |
| DNS4EU | ssl.gfw301.top |
malicious | Sinkholed |
| DigiCert UltraDNS | p113p.xyz |
malicious | Sinkholed |
| DNS4EU | p113p.xyz |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога