t-mobile[.]cfhva[.]icu
“T-Mobile Tuesdays - Get Free Stuff & Great Deals | T-Mobile”
t-mobile.cfhva.icu — Контент недоступний (HTTP 502). Уособлення бренду: Apple; Тип шахрайства: Tech Support Scam. Зведення доказів: VirusTotal 14/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLScan malicious verdict; PhishDestroy score 92/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain t-mobile.cfhva.icu is a phishing site engaged in brand impersonation, specifically targeting Apple under the guise of a T-Mobile promotion. This scam operates as a tech-support fraud, tricking users into believing they are interacting with a legitimate T-Mobile offer to extract personal information or payments. Despite its appearance, t-mobile.cfhva.icu is not affiliated with Apple or T-Mobile and has been taken offline, though it previously posed an elevated risk to visitors.
Technical analysis of t-mobile.cfhva.icu reveals 14 of 95 VirusTotal security vendors flagged the domain, including ADMINUSLabs, alphaMountain.ai, and BitDefender. The domain was created on 2026-02-21 and resolves to the IP address 104.21.30.186, hosted on Cloudflare's infrastructure in the US. It appears on one security blocklist, PhishDestroy, and holds a Gridinsoft trust score of 0/100. The SSL certificate is issued by WE1, and the observed page title was 'T-Mobile Tuesdays - Get Free Stuff & Great Deals | T-Mobile', further indicating its deceptive intent.
Users who may have interacted with t-mobile.cfhva.icu should immediately change any passwords entered on the site and enable two-factor authentication on all accounts. Monitor financial statements and credit reports for signs of fraud. Report the phishing domain to the Federal Trade Commission at reportfraud.ftc.gov, to Apple via their official phishing reporting page, and to the Anti-Phishing Working Group at reportphishing@apwg.org. If personal or financial data was compromised, consider placing a fraud alert with credit bureaus.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ЗОНА SHORTDOT · ПУБЛІЧНІ ДОКАЗИ
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога