w65v[.]xyz
“welcome-BET365”
w65v.xyz — Контент недоступний (HTTP 502). Уособлення бренду: Bet365; Тип шахрайства: Crypto Gambling. Зведення доказів: VirusTotal 23/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLScan malicious verdict; PhishDestroy score 100/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain w65v.xyz has been identified as a confirmed phishing site specifically designed to impersonate the well-known online gambling platform Bet365. The threat is classified as brand impersonation, with the domain currently taken offline after being flagged by security researchers. The page title found was "welcome-BET365," a clear attempt to deceive users into believing they are accessing a legitimate Bet365 welcome page.
Technical analysis reveals that w65v.xyz was registered through Gname.com Pte. Ltd. on March 04, 2026, and resolves to the IP address 45.196.247.179. The domain appears on one security blocklist and was flagged by 23 out of 95 VirusTotal vendors, indicating a high likelihood of malicious intent. AlienVault OTX also detected the domain in one threat intelligence pulse, confirming its association with phishing campaigns. The SSL certificate (R12) was likely obtained to give the site a false sense of legitimacy. Despite being taken offline, the domain's creation date is remarkably recent, underscoring the rapid deployment of phishing infrastructure.
Given the elevated risk level and the known intelligence pointing to Bet365 impersonation, users are strongly advised to avoid any interaction with w65v.xyz or similar domains. PhishDestroy recommends verifying any Bet365-related URLs through official channels before entering credentials or personal information. If you have already submitted data to this domain, change your Bet365 password immediately and enable two-factor authentication. Stay vigilant against phishing attempts that exploit trusted brand names.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криміналістичні дані
Casino / Gambling License Verification
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога