t-mobile[.]jtdvy[.]cc
“Welcome to nginx!”
t-mobile.jtdvy.cc — Conteúdo indisponível (HTTP 502). Resumo das evidências: VirusTotal 13/93 (ADMINUSLabs, Criminal IP, Cluster25, CRDF, CyRadar); URLQuery 4 alerts; PhishDestroy score 89/100. Registrador: Gname.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
On July 23, 2026, the domain t-mobile.jtdvy.cc was identified as part of a brand impersonation scam targeting x.com. The domain, registered through Gname.com Pte. Ltd., was created on February 21, 2026, and has since been taken offline. Infrastructure analysis reveals that the domain resolved to the IP address 172.67.221.14, which is located in the United States and is associated with AS13335 Cloudflare, Inc. The domain lacks an SSL certificate, further indicating its questionable nature.
PhishDestroy has listed this domain as blocked, and it has a Gridinsoft trust score of 0/100. Despite the domain being offline, 13 out of 93 security vendors on VirusTotal flagged it as suspicious, suggesting that it posed a significant risk when active. The domain appears on one security blocklist, indicating a high level of threat recognition.
When last checked, the page title was 'Welcome to nginx!', which is a default page often seen on newly set up or compromised servers. Given the elevated risk level and brand impersonation scam type, network defenders should remain vigilant and monitor for any signs of the domain reactivating. Any residual DNS records or cached pages related to this domain should be reviewed and removed if found to be malicious.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | t-mobile.jtdvy.cc |
phishing | Phishing Block |
| Hagezi Threat Feed | t-mobile.jtdvy.cc |
malicious | Sinkholed |
| DNS4EU | t-mobile.jtdvy.cc |
malicious | Sinkholed |
| Quad9 DNS | t-mobile.jtdvy.cc |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
PD-20260124-67A641 Recipient: complaint@gname.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo