att[.]niotd[.]cc
“Welcome to nginx!”
Résumé des preuves
This domain is classified as a high-risk brand_impersonation threat targeting x.com. Analysis indicates that att.niotd.cc was associated with infrastructure capable of supporting deceptive content intended to imitate the targeted brand. The domain is currently offline after being taken offline. At the time of observation, the page title was "Welcome to nginx!", suggesting a default web server page rather than legitimate branded content, although this does not reduce the significance of the associated threat indicators.
Infrastructure analysis reveals that the domain resolved to IP address 188.114.96.3, located in the US under AS13335 Cloudflare, Inc. Registration records indicate the domain was created on February 21, 2026, through Gname.com Pte. Ltd. No SSL certificate was present. Security telemetry shows the domain appears on 1 security blocklist and is specifically blocked by PhishDestroy. Google Safe Browsing classifies the domain as phishing. Reputation data further indicates that 17 of 95 VirusTotal security vendors flag the domain, supporting the high-risk assessment.
Although the domain is no longer active, historical indicators should remain blocked because similar infrastructure may be reused in future campaigns. Organizations should retain detections for the domain and IP address, review DNS, proxy, and endpoint logs for prior access, and investigate any authentication attempts or sensitive data submissions associated with this domain. Users who interacted with the site should change exposed credentials, review account activity for unauthorized access, and remain alert for follow-on brand impersonation attempts using related domains or infrastructure.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260120-045CF6- Titre de la page capturée
- Welcome to nginx!
- Artefact PDF
- Preuve PDF
Texte intégral des preuves
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif