att[.]xpezb[.]cc
“Welcome to nginx!”
ملخص الأدلة
The domain att.xpezb.cc was registered on February 21, 2026 through Gname.com Pte. Ltd. and is presently taken offline. Infrastructure analysis shows the domain resolves to the IP address 188.114.96.3, which is hosted by Cloudflare (ASN13335) and geolocated to the United States. The authoritative nameservers are lennon.ns.cloudflare.com and noor.ns.cloudflare.com, confirming that the domain leverages Cloudflare’s DNS and CDN services. No TLS certificate is present, indicating that the site does not support HTTPS connections.
An HTTP request to the domain returns the generic page title "Welcome to nginx!", a default server response that provides no brand‑specific content. The domain is flagged as a brand‑impersonation campaign targeting x.com, consistent with the listed scam type of brand impersonation. Detection services have taken notice: PhishDestroy has blocked the domain, and it appears on one external security blocklist. VirusTotal analysis shows that 11 of 93 scanning engines have flagged the domain as malicious, reinforcing the suspicion of illicit activity.
Gridinsoft assigns a trust score of 0 out of 100, indicating an extremely low reputation. While the site is offline and detailed payloads or phishing pages cannot be examined, the observable infrastructure—use of Cloudflare infrastructure, lack of TLS, generic server response, and multiple security vendor detections—strongly suggests a malicious intent aimed at deceiving users of the x.com brand. Defenders should add att.xpezb.cc to blocklists, monitor the associated IP 188.114.96.3 for any future hosting of similar content, and enforce strict DNS filtering for domains that resolve to the same Cloudflare nameservers without legitimate business justification. Continuous observation of new registrations from the same registrar may also help anticipate related campaigns.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260120-31E8C2- عنوان الصفحة الملتقطة
- Welcome to nginx!
- ملف PDF
- دليل PDF
النص الكامل للدليل
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | att.xpezb.cc |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب