att[.]xpezb[.]cc
“Welcome to nginx!”
Kanıt özeti
The domain att.xpezb.cc was registered on February 21, 2026 through Gname.com Pte. Ltd. and is presently taken offline. Infrastructure analysis shows the domain resolves to the IP address 188.114.96.3, which is hosted by Cloudflare (ASN13335) and geolocated to the United States. The authoritative nameservers are lennon.ns.cloudflare.com and noor.ns.cloudflare.com, confirming that the domain leverages Cloudflare’s DNS and CDN services. No TLS certificate is present, indicating that the site does not support HTTPS connections.
An HTTP request to the domain returns the generic page title "Welcome to nginx!", a default server response that provides no brand‑specific content. The domain is flagged as a brand‑impersonation campaign targeting x.com, consistent with the listed scam type of brand impersonation. Detection services have taken notice: PhishDestroy has blocked the domain, and it appears on one external security blocklist. VirusTotal analysis shows that 11 of 93 scanning engines have flagged the domain as malicious, reinforcing the suspicion of illicit activity.
Gridinsoft assigns a trust score of 0 out of 100, indicating an extremely low reputation. While the site is offline and detailed payloads or phishing pages cannot be examined, the observable infrastructure—use of Cloudflare infrastructure, lack of TLS, generic server response, and multiple security vendor detections—strongly suggests a malicious intent aimed at deceiving users of the x.com brand. Defenders should add att.xpezb.cc to blocklists, monitor the associated IP 188.114.96.3 for any future hosting of similar content, and enforce strict DNS filtering for domains that resolve to the same Cloudflare nameservers without legitimate business justification. Continuous observation of new registrations from the same registrar may also help anticipate related campaigns.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260120-31E8C2- Yakalanan sayfa başlığı
- Welcome to nginx!
- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | att.xpezb.cc |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin