Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is complaint@gname.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
t-mobile[.]ruti[.]cc
“Welcome to nginx!”
t-mobile.ruti.cc — Непроверенный. Сводка доказательств: VirusTotal 13/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, ESET); URLQuery 1 alert; PhishDestroy score 93/100. Регистратор: Gname.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, t-mobile.ruti.cc, poses a threat as a phishing site. The page title "Welcome to nginx!" indicates a default web server configuration, suggesting the site was not fully developed. However, it is impersonating the brand x.com, likely to harvest login credentials from users expecting a legitimate x.com service. The site's structure and domain name attempt to deceive visitors into believing they are interacting with a trusted entity.
Technical evidence shows the site was flagged by 7 out of 95 VirusTotal vendors, with detections from alphaMountain.ai, Cluster25, CRDF, Forcepoint ThreatSeeker, and Google Safebrowsing. It is listed on 1 blocklist. The domain was created on 2026-02-21, registered through Gname.com Pte. Ltd., and hosted on IP address 47.86.58.26, located in Hong Kong under AS45102 Alibaba (US) Technology Co., Ltd. No SSL certificate is present. Nameservers are a4.share-dns.com and b4.share-dns.net.
The site is currently down or offline, indicating it may be inactive or taken down. The GridinSoft trust rating is 0 out of 100, and the DOM risk score is 10, confirming a high-risk threat. Despite being offline, the domain remains a significant risk due to its impersonation of x.com and its recent creation date, suggesting potential for reactivation.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | t-mobile.ruti.cc |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260129-27DFAE Recipient: complaint@gname.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание