v19f[.]xyz
“welcome-BET365”
v19f.xyz — 内容不可用 (HTTP 502). 品牌冒充:Bet365; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 15/94 (alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar, Emsisoft); URLQuery 3 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. 注册商: Gname.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies v19f.xyz as an active credential-theft domain designed to deceive users into surrendering login credentials under false pretenses. The site masquerades as a legitimate service, tricking visitors into entering sensitive information such as usernames, passwords, or financial details. This domain specifically targets unsuspecting users by exploiting trust in familiar login interfaces, making it a high-risk threat for data compromise. This domain was flagged by 13 of 95 VirusTotal security vendors, indicating a significant potential for malicious activity. Registered through Gname.com Pte. Ltd. on March 18, 2026, the domain resolves to IP address 45.196.247.27 and operates under a Let's Encrypt SSL certificate, which may further lend it an air of legitimacy. The combination of a recently created domain, a high-risk registrar footprint, and multiple security vendor detections underscores the elevated threat this site poses to visitors. If you have visited v19f.xyz, immediately change any passwords entered on the site and enable two-factor authentication on all associated accounts. Scan your device for malware using reputable antivirus software and monitor financial accounts for unauthorized activity. Avoid interacting with the site further and report it to your organization’s security team or relevant cybersecurity authorities if possible. Exercise caution with any unsolicited links or unexpected login prompts to mitigate the risk of credential theft.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | v19f.xyz |
malicious | Sinkholed |
| Hagezi Threat Feed | img.esportsdata.cc |
malicious | Sinkholed |
| DNS4EU | img.esportsdata.cc |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 3 identified
Progressive JavaScript framework for building user interfaces.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
证据与外部报告
PD-20260328-DE37FB Recipient: complaint@gname.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。