a57v[.]xyz
“welcome-BET365”
a57v.xyz — 内容不可用. 品牌冒充:Bet365; 诈骗类型:Crypto Gambling. 证据摘要: VirusTotal 9/93 (alphaMountain.ai, CRDF, CyRadar, Fortinet, Gridinsoft); URLScan malicious verdict; PhishDestroy score 77/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain a57v.xyz indicates a confirmed brand impersonation campaign targeting Bet365, classified as a crypto gambling scam. The domain was registered on February 21, 2026, and resolved to the IP address 103.233.249.125, hosted in Hong Kong under AS132839 (POWER LINE DATACENTER). The SSL certificate is identified as R12, a detail that may assist in tracking related infrastructure. The page title, 'welcome-BET365,' explicitly references the targeted brand, aligning with the scam type specified in threat intelligence sources. Detection data reveals moderate vendor awareness: 9 of 93 security vendors on VirusTotal flagged the domain as malicious.
The domain appears on one security blocklist and was included in a single AlienVault OTX threat intelligence pulse. The domain has since been taken offline, and the mitigation service PhishDestroyer lists it as blocked. No additional details regarding the specific phishing kit, payload delivery mechanism, or victim interaction patterns are available in the current intelligence. Defenders should treat this domain as a confirmed malicious indicator.
Network-level blocks should be implemented for 103.233.249.125 and the domain itself. Given the crypto gambling classification, monitoring for related wallet addresses or transaction patterns in associated logs may aid in identifying victim impact. The R12 SSL certificate and hosting provider may serve as pivot points for identifying additional compromised or impersonating domains. Further analysis of the domain's historical content, if recoverable, could provide insight into the operational tactics employed.
威胁响应 Pipeline
公共封禁名单状态
Casino / Gambling License Verification
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。