t-mobile[.]ngpwg[.]cc
“ngpwg.cc | 522: Connection timed out”
t-mobile.ngpwg.cc — सामग्री अनुपलब्ध (HTTP 502). ब्रांड प्रतिरूपण: T-mobile; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 12/95 (ADMINUSLabs, Cluster25, CRDF, CyRadar, Emsisoft); URLQuery 3 alerts; PhishDestroy score 90/100. रजिस्ट्रार: Gname.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain t-mobile.ngpwg.cc was registered on February 21, 2026 through Gname.com Pte. Ltd. and is hosted on Cloudflare infrastructure (AS13335) with the public address 104.21.79.193, located in the United States. DNS resolution points to Cloudflare nameservers becky.ns.cloudflare.com and finley.ns.cloudflare.com. No TLS certificate is presented for the host, and an HTTP request returns the generic title "ngpwg.cc | 522: Connection timed out," indicating that the site is currently unreachable.
Threat intelligence indicates that the domain is being used for a T‑Mobile brand impersonation campaign employing an Airdrop Scam phishing kit. Twelve of ninety‑five security vendors on VirusTotal have flagged the domain as malicious, and it appears on at least one public blocklist, specifically PhishDestroy. The Gridinsoft trust score for the domain is 0 out of 100, reinforcing its malicious classification.
Because the site is offline, content analysis is not possible, and the lack of an SSL certificate further limits technical verification of payload delivery. Defenders should add the domain and its associated IP address to network‑level blocklists, monitor for any future re‑hosting of the same IP range, and enforce strict outbound filtering for connections to Cloudflare‑served domains that are not explicitly trusted. Continuous observation of the registrar Gname.com for new registrations that mimic the t‑mobile brand is recommended, as well as periodic re‑scanning of the IP address to detect any resurgence of phishing activity.
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | t-mobile.ngpwg.cc |
phishing | Phishing Block |
| Hagezi Threat Feed | t-mobile.ngpwg.cc |
malicious | Sinkholed |
| DNS4EU | t-mobile.ngpwg.cc |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
PD-20260202-57E42B Recipient: complaint@gname.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।