att[.]vmoyq[.]cc
“Welcome to nginx!”
Resumen de las pruebas
Analysis of the domain att.vmoyq.cc indicates it was actively impersonating the social media platform x.com as recently as July 23, 2026. The domain, registered on February 21, 2026, through Gname.com Pte. Ltd., resolved to the IP address 172.67.132.66, hosted on Cloudflare's network (AS13335) in the United States. No SSL certificate was detected, increasing the risk of unencrypted credential harvesting. The page title 'Welcome to nginx!' suggests a default server configuration, often observed in hastily deployed phishing infrastructure.
At the time of assessment, the domain was flagged by 12 of 95 security vendors on VirusTotal and appeared on the PhishDestroy blocklist, confirming its classification as brand impersonation. The domain has since been taken offline, though its prior hosting on Cloudflare nameservers (bill.ns.cloudflare.com and donna.ns.cloudflare.com) and lack of legitimate branding align with known phishing patterns. Gridinsoft assigned a trust score of 0/100, further corroborating its malicious classification.
While the exact content of the site remains unanalyzed, the combination of a default nginx page, absence of encryption, and blocklist presence strongly suggests it was designed to harvest user credentials under the guise of x.com. Defenders should treat this domain as compromised and monitor for related infrastructure, particularly domains registered through the same registrar or resolving to the same IP range. Given its offline status, no immediate user interaction risk exists, but historical logs should be reviewed for exposure.
Instantánea de evidencia enviada
- Enviado
- Registros del libro
- 1
- ID del caso
PD-20260120-9F901F- Título de la página capturada
- Welcome to nginx!
- Artefacto PDF
- Evidencia en PDF
Texto completo de la evidencia
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
Inteligencia de seguridad de red
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | att.vmoyq.cc |
malicious | Sinkholed |
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.