t-mobile[.]rmhyc[.]cc
“Welcome to nginx!”
t-mobile.rmhyc.cc — Contenu indisponible (HTTP 502). Résumé des preuves: VirusTotal 20/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, Cluster25, CRDF); PhishDestroy score 95/100. Bureau d’enregistrement: Gname.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain t-mobile.rmhyc.cc operates as an impersonation scam site, presenting a page titled "Welcome to nginx!" while claiming to impersonate the brand x.com. This discrepancy between the generic landing page and the targeted brand indicates a potential phishing or credential harvesting threat, where visitors expecting x.com services are deceived into interacting with a fraudulent interface.
Technical analysis reveals the site is flagged by 20 out of 95 VirusTotal vendors, with detections from ADMINUSLabs, Criminal IP, alphaMountain.ai, Cluster25, and CRDF. The domain is registered through Gname.com Pte. Ltd., created on 2026-02-21, and hosted on IP 104.21.62.125 (US) under AS13335 Cloudflare, Inc. It uses nameservers michael.ns.cloudflare.com and nelci.ns.cloudflare.com, with no SSL certificate present, exposing any data transmitted to interception.
As of the analysis, the site is currently DOWN/OFFLINE, with a GridinSoft trust score of 0/100 and a DOM risk score of 10, indicating a high-risk profile despite its inactive state. The presence on one blocklist and the low trust score confirm its malicious nature, posing a residual threat if reactivated.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Données factuelles et rapports externes
PD-20260128-C21587 Recipient: complaint@gname.com Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif