t-mobile[.]dpbli[.]cc
“Welcome to nginx!”
Kanıt özeti
This domain, t-mobile.dpbli.cc, poses a brand impersonation threat designed to deceive users into believing they are interacting with x.com, a well-known platform. The site likely aims to harvest login credentials, personal information, or facilitate unauthorized transactions by mimicking the appearance and functionality of the legitimate service. Users who visit such domains may unknowingly expose sensitive data, leading to account compromise, financial loss, or further exploitation by threat actors. Analysis indicates this domain is malicious based on multiple technical indicators. VirusTotal reports that 19 out of 95 security vendors have flagged t-mobile.dpbli.cc as malicious, reflecting a consensus among detection engines. The domain was registered on February 21, 2026, through Gname.com Pte. Ltd., a registrar frequently associated with suspicious or fraudulent domains. Infrastructure analysis reveals the domain resolves to the IP address 172.67.174.16, hosted on Cloudflare's network (AS13335), which is commonly used to obscure the true origin of malicious sites. Additionally, the domain lacks an SSL certificate, increasing the risk of data interception during transmission. If you visited t-mobile.dpbli.cc or interacted with its content, immediate action is required to mitigate potential risks. First, disconnect the affected device from the network to prevent further data exfiltration. Run a full antivirus scan to detect and remove any malware or malicious scripts that may have been downloaded. Change passwords for any accounts accessed while the domain was open, prioritizing those associated with x.com or other sensitive services. Enable multi-factor authentication (MFA) on all critical accounts to add an additional layer of security. Monitor financial statements and account activity for unauthorized transactions, and report any suspicious findings to the relevant platform or financial institution. Finally, consider reporting the domain to security teams or threat intelligence platforms to aid in broader mitigation efforts.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260205-4F67A1- Yakalanan sayfa başlığı
- Welcome to nginx!
- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Policy Violations: Illegal Activities section forbids phishing, fraud, fake sites, malware distribution; registrar investigates and may suspend or delete domain
Applicable Laws: Computer Misuse Act 1993 §§3+, Penal Code §§415–420 (cheating), Online Criminal Harms Act (OCHA)
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | t-mobile.dpbli.cc |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin