verizon[.]vlmfe[.]cc
“Welcome to nginx!”
Сводка доказательств
On 23 July 2026, the domain verizon.vlmfe.cc was observed to be taken offline. The domain was registered on 21 February 2026 through Gname.com Pte. Ltd. and resolves to the Cloudflare‑owned address 172.67.218.3, which belongs to AS13335 in the United States. DNS resolution uses the Cloudflare authoritative nameservers dalary.ns.cloudflare.com and jaxson.ns.cloudflare.com. No TLS certificate is presented; an HTTP request returns the default nginx page titled “Welcome to nginx!”. The site is classified as a brand‑impersonation campaign targeting the x.com brand.
Gridinsoft assigned a trust score of 0 out of 100, indicating a high likelihood of malicious intent. VirusTotal analysis shows that 15 of 95 scanning engines flagged the domain as malicious. The domain appears on a single external blocklist and is actively blocked by the PhishDestroy service. The lack of an SSL certificate, combined with the generic nginx page, suggests the infrastructure is being used solely for hosting malicious content rather than serving a legitimate web service.
At present, the only confirmed indicator is the association with the x.com brand; no further payload, phishing page, or credential‑harvesting functionality has been publicly disclosed. Defenders should continue to monitor the IP address 172.67.218.3 for any resurgence of activity, enforce blocking of the domain and its host IP in network and endpoint controls, and add the domain to local threat intelligence feeds. Because the domain is already offline, any future re‑registration should be treated as suspicious until verified. Ongoing correlation with other Cloudflare‑hosted infrastructure may reveal additional related campaigns.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260122-1D6552- Заголовок сохранённой страницы
- Welcome to nginx!
- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание