t-mobile[.]czayw[.]cc
“T-Mobile Tuesdays - Get Free Stuff & Great Deals | T-Mobile”
t-mobile.czayw.cc — Inhalt nicht verfügbar (HTTP 502). Markenidentität: Apple; Betrugstyp: Tech Support Scam. Zusammenfassung der Beweislage: VirusTotal 18/93 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, Cluster25, CRDF); URLScan malicious verdict; PhishDestroy score 95/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
PhishDestroy has identified t-mobile.czayw.cc as a dangerous phishing site that impersonates T-Mobile to steal personal information from Apple users. Despite its legitimate-looking page title, "T-Mobile Tuesdays - Get Free Stuff & Great Deals | T-Mobile," this domain is a sophisticated trap designed to harvest login credentials, credit card details, or other sensitive data. The site poses a high risk to anyone who may have been tricked into visiting it, especially those expecting promotional offers from T-Mobile.
Our investigation reveals clear evidence of malicious intent. The domain was created on February 21, 2026, and resolves to IP address 104.21.73.16, which is associated with Cloudflare. VirusTotal analysis shows that 18 out of 95 security vendors flag this domain as malicious, and it appears on one security blocklist. The SSL certificate is valid but issued by WE1, a lesser-known certificate authority often used by phishing sites. These technical indicators, combined with the fact that the domain is now offline, confirm that it was a confirmed phishing operation.
If you have visited t-mobile.czayw.cc, take immediate action. Change any passwords you may have entered on the site, especially for your Apple ID and T-Mobile account. Monitor your financial accounts for unauthorized transactions and consider placing a fraud alert on your credit report. Run a full antivirus scan on your device to ensure no malware was downloaded. Stay vigilant against future phishing attempts by always verifying the URL before entering sensitive information.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Forensische Erkenntnisse
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt