t-mobile[.]aorkd[.]cc
“aorkd.cc | 522: Connection timed out”
ملخص الأدلة
The domain t-mobile.aorkd.cc was registered on 2026-02-21 through Gname.com Pte. Ltd. and resolves to the IP address 188.114.96.3, an address owned by Cloudflare, Inc. (AS13335) and geolocated to the United States. DNS resolution uses Cloudflare nameservers ali.ns.cloudflare.com and rocco.ns.cloudflare.com. No TLS certificate is present, and HTTP requests return a 522 timeout, as reflected in the page title "aorkd.cc | 522: Connection timed out." The site has been taken offline, and its current status is listed as offline. Threat intelligence classifies the domain as a brand‑impersonation campaign targeting the T‑Mobile brand, employing the publicly known Airdrop Scam phishing kit.
Detection data shows that 15 of 93 security vendors on VirusTotal have flagged the domain as malicious, and the site is listed on one security blocklist. Gridinsoft assigns a trust score of 0 out of 100, indicating an extremely low reputation. The domain was blocked by the PhishDestroy filtering service.
Evidence confirms that the domain is actively used for brand impersonation, but the lack of a valid SSL certificate and the 522 timeout limit the ability to observe the exact malicious payload or page content. Defenders should add 188.114.96.3 to network blocklists, enforce DNS filtering of the domain, and monitor for similarly structured subdomains or new registrations using the same registrar and Cloudflare infrastructure. Continuous re‑evaluation is advised in case the domain is re‑hosted or the phishing kit is updated.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260202-5EB3DE- عنوان الصفحة الملتقطة
- about:privatebrowsing
- ملف PDF
- دليل PDF
النص الكامل للدليل
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | t-mobile.aorkd.cc |
malicious | Sinkholed |
| OpenDNS | t-mobile.aorkd.cc |
phishing | Phishing Block |
| Cloudflare DNS | t-mobile.aorkd.cc |
malicious | Sinkholed |
| Hagezi Threat Feed | t-mobile.aorkd.cc |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب