t-mobile[.]dmibgc[.]top
“Welcome to OpenResty!”
t-mobile.dmibgc.top — 内容不可用 (HTTP 502). 品牌冒充:Google; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 18/91 (alphaMountain.ai, BitDefender, Cluster25, CRDF, CyRadar); Google Safe Browsing flagged; Spamhaus DBL_PHISH; PhishDestroy score 100/100. 注册商: NameSilo.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain t-mobile.dmibgc.top poses a significant threat by impersonating T-Mobile, a major telecommunications brand. Detected swiftly by PhishDestroy on June 17, 2026, just one day after its creation, the domain is flagged as malicious by 18 out of 95 VirusTotal vendors. Google Safe Browsing has also flagged this domain, underscoring its potential risk to users.
Hosted on a Cloudflare IP in the United States, the domain uses an SSL certificate issued by Google Trust Services, which may lend it an appearance of legitimacy. Despite this, its platform risk score is a maximum 100/100, indicating a high likelihood of malicious activity. The page currently displays a generic "Welcome to OpenResty!" message, which may be a placeholder as attackers prepare the phishing content.
The domain is registered with NameSilo, LLC, a registrar often used for quick and anonymous domain registrations. It is already included in one public blocklist, specifically PhishDestroy's, which highlights its rapid identification as a threat. The swift detection and multiple flags suggest that the domain is part of a coordinated phishing campaign targeting T-Mobile customers, aiming to harvest sensitive information like login credentials or payment details. The presence of such a domain emphasizes the need for continuous monitoring and quick response to emerging threats.
网络安全情报 Registrar context
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
Registration: dmibgc.top
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For the registrable domain dmibgc.top behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告
PD-20260617-C83D73 Recipient: abuse@nic.top 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。