t-mobile[.]vidnufh[.]cc
“Welcome to nginx!”
t-mobile.vidnufh.cc — Контент недоступний (HTTP 502). Зведення доказів: VirusTotal 18/93 (ADMINUSLabs, BitDefender, Chong Lua Dao, Cluster25, CRDF); URLQuery 2 alerts; PhishDestroy score 95/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, t-mobile.vidnufh.cc, operates as a fraudulent login portal designed to impersonate X.com (formerly Twitter). The site presents a fake authentication interface to trick visitors into entering their account credentials, which are then harvested by threat actors. The stolen credentials may be used for unauthorized account access, financial fraud, or further phishing campaigns targeting the victim's contacts. The domain's infrastructure and content are engineered to mimic legitimate X.com properties, increasing the likelihood of successful deception among unsuspecting users. Analysis indicates this domain was registered on February 21, 2026, through Gname.com Pte. Ltd., a registrar frequently associated with abusive domains. At the time of assessment, 18 out of 95 security vendors on VirusTotal flagged the domain as malicious, with detection labels including phishing and brand impersonation. The domain resolves to IP address 172.67.200.15, hosted on Cloudflare's network (AS13335), which is commonly used to mask the true origin of malicious infrastructure. The absence of an SSL certificate further signals illegitimacy, as modern web services universally employ encryption for secure communication. If you visited t-mobile.vidnufh.cc and entered any credentials, immediate action is required. First, change your X.com password using a separate, trusted device and enable multi-factor authentication if not already active. Review your account for unauthorized activity, including posts, messages, or connected applications. Monitor linked email accounts and financial services for signs of compromise, such as password reset emails or unauthorized transactions. Report the incident to X.com's security team and consider filing a complaint with relevant cybercrime authorities. Avoid interacting with any communications received from the domain, as threat actors may attempt follow-up attacks via email or direct messages.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260203-EBDEEB Recipient: complaint@gname.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога