MALICIOUS — CRITICAL
ts67866[.]com
Analysis of ts67866.com indicates a brand impersonation infrastructure targeting Bet365, assessed as an elevated-risk phishing endpoint.
- VirusTotal
- 21/94
- Blocklists
- No stored match
- sẵn có
- Nội dung không có sẵn · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
ts67866.com — Nội dung không có sẵn (HTTP 502). Mạo danh thương hiệu: Bet365; Loại lừa đảo: Crypto Gambling. Tóm tắt bằng chứng: VirusTotal 21/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLQuery 5 alerts; URLScan malicious verdict; PhishDestroy score 95/100. Nhà đăng ký: GoDaddy.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
Evidence Analysis
ts67866.com — Bet365 Credential Harvesting Clone
Analysis of ts67866.com indicates a brand impersonation infrastructure targeting Bet365, assessed as an elevated-risk phishing endpoint.
Analysis of ts67866.com indicates a brand impersonation infrastructure targeting Bet365, assessed as an elevated-risk phishing endpoint. The domain presents characteristics consistent with credential harvesting campaigns, including imitation of legitimate betting service branding and a page title matching “bet365”. The observed behavior suggests a cloned authentication or landing interface designed to capture user credentials.
Technical telemetry attributes the domain to a registration via GoDaddy.com, LLC, with creation timestamp recorded as March 10, 2026. Infrastructure resolution points to IP 20.2.172.139, geolocated in Hong Kong under AS8075 Microsoft Corporation. TLS configuration uses a Sectigo Limited certificate, specifically Sectigo Public Server Authentication CA DV R36. The domain appears on 1 security blocklist and is blocked by PhishDestroy. Multi-engine detection reports a VirusTotal score of 21/95 security vendors flagging the domain.
Current status indicates the domain is offline following takedown actions, reducing immediate exposure; however, historical resolution data confirms prior malicious hosting activity. The combination of brand impersonation of Bet365, a relatively recent creation date, and multi-vendor detection coverage (21/95) suggests a coordinated phishing campaign lifecycle. Despite removal from active resolution, residual risk persists through potential redeployment on alternate infrastructure or reuse of the domain for future lures. Continued monitoring of related IP space 20.2.172.139 and certificate issuance patterns is recommended for attribution and early detection.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Phạm vi dữ liệu12 recorded checks
Tình báo an ninh mạng
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | ts67866.com |
phishing | Phishing Block |
| Cloudflare DNS | ts67866.com |
malicious | Sinkholed |
| Hagezi Threat Feed | ts67866.com |
malicious | Sinkholed |
| DigiCert UltraDNS | ts67866.com |
malicious | Sinkholed |
| DNS4EU | ts67866.com |
malicious | Sinkholed |
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Bản chụp đã lưu
Thông tin về tên miền
Chi tiết kỹ thuậtDNS, SAN trong SSL, dấu thời gian
ICANN OVERSIGHT
Bối cảnh công nhận và RAA
Bối cảnh công nhận và RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
Phân tích của VirusTotal
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of ts67866.com · checked Mar 11, 2026
Bằng chứng và các báo cáo bên ngoàiIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.