w45a[.]xyz
“welcome-BET365”
w45a.xyz — Контент недоступний (HTTP 502). Уособлення бренду: Bet365; Тип шахрайства: Crypto Gambling. Зведення доказів: VirusTotal 15/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CRDF); URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of the domain w45a.xyz indicates it was actively impersonating the Bet365 brand to facilitate crypto-gambling scams. Registered on December 21, 2025, through Gname.com Pte. Ltd., the domain resolved to the IP address 45.196.247.147, hosted on AS140224 (Nebula Global LLC) in Hong Kong. No SSL certificate was detected, increasing the risk of unencrypted data transmission. The page title, 'welcome-BET365,' explicitly referenced the targeted brand, aligning with the reported scam type of crypto-gambling.
Detection coverage was limited but notable: 15 of 93 security vendors on VirusTotal flagged the domain, and it appeared on one security blocklist, specifically PhishDestroy. AlienVault OTX included the domain in a single threat intelligence pulse, suggesting some level of coordinated tracking. The domain's nameservers (ns1.1111343.com, ns2.1111343.com, ns1.dnsbm.com, ns2.dnsbm.com, ns3.1111343.com, and ns4) were associated with infrastructure commonly reused for malicious activities.
As of July 23, 2026, the domain has been taken offline, though defenders should remain vigilant for re-emergence under similar naming conventions or infrastructure. Organizations are advised to block the domain and its associated IP address, monitor for related indicators, and alert users to the specific threat of crypto-gambling scams impersonating Bet365. The lack of SSL and limited but consistent detection by security vendors underscore the need for proactive monitoring of brand-impersonation domains, particularly those leveraging gambling-related lures.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога