t-mobile[.]com-ibl[.]cc
“Welcome to nginx!”
Zusammenfassung der Beweislage
The domain t-mobile.com-ibl.cc hosted a page titled "Welcome to nginx!" while impersonating the brand x.com as part of an impersonation scam. This site posed a threat by attempting to deceive users into believing it was associated with a legitimate service, potentially for credential harvesting or other fraudulent activities. The simplistic page title suggests the site was minimally configured, likely to host malicious content without revealing its true purpose.
Technical evidence shows the domain was flagged by 18 out of 95 VirusTotal vendors, with detections from ADMINUSLabs, Criminal IP, BitDefender, Certego, and CRDF. It was listed on one blocklist. The domain was registered through NameSilo, LLC and created on 2026-01-01. The IP address 104.21.39.233 is located in the United States and belongs to AS13335 Cloudflare, Inc. No SSL certificate was present. Nameservers are dale.ns.cloudflare.com and riya.ns.cloudflare.com.
The site is currently down and offline. Its GridinSoft trust rating is 0 out of 100, and the DOM risk score is 10, indicating a high risk. The combination of low trust, high risk score, and multiple vendor flags confirms this domain is malicious and should be blocked.
Momentaufnahme der übermittelten Beweise
- Gesendet
- Protokolleinträge
- 1
- Fall-ID
PD-20260106-4CCD56- Titel der erfassten Seite
- Welcome to nginx!
- PDF-Artefakt
- PDF-Beweis
Rechtsgrundlage
Vollständiger Beweistext
Acceptable Use Policy (AUP): The domain t-mobile.com-ibl.cc is engaged in phishing activities, which directly contravenes the AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The use of this domain for fraudulent purposes constitutes a violation of the TOS, which reserves the right to suspend or terminate services for such violations.
Applicable Laws (US):
Computer Fraud and Abuse Act (18 U.S.C. § 1030): This federal law prohibits unauthorized access to computers and the use of such access to commit fraud.
Wire Fraud (18 U.S.C. § 1343): This statute criminalizes schemes to defraud individuals or entities via electronic communications, which is applicable to the phishing activities associated with this domain.
CAN-SPAM Act (15 U.S.C. § 7701 et seq.): This law regulates commercial email and prohibits deceptive practices in electronic communications, including phishing.
Regulatory Note: Failure to take immediate action against this domain may result in liability under applicable laws and could expose your organization to regulatory scrutiny. Prompt compliance is essential to mitigate potential legal repercussions.
Data Coverage
Erkenntnisse zur Netzwerksicherheit
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | t-mobile.com-ibl.cc |
malicious | Sinkholed |
| Hagezi Threat Feed | t-mobile.com-ibl.cc |
malicious | Sinkholed |
| OpenDNS | t-mobile.com-ibl.cc |
phishing | Phishing Block |
| Quad9 DNS | t-mobile.com-ibl.cc |
malicious | Sinkholed |
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 13.08.2026
Erkennungszeitleiste
-
Cloudflare Radar
Cloudflare-Radar-Scan gespeichert · Scan öffnen
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt