t-mobile[.]fnirl[.]cc
“Welcome to nginx!”
t-mobile.fnirl.cc — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 17/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, Cluster25, CRDF); CF Radar malicious; PhishDestroy score 95/100. 注册商: Gname.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, t-mobile.fnirl.cc, presents a page titled "Welcome to nginx!" but impersonates the brand x.com, indicating a phishing or credential harvesting operation. The site poses a threat by attempting to deceive visitors into believing they are interacting with a legitimate service, potentially capturing sensitive login information.
Technical evidence reveals the domain was flagged by 17 out of 95 VirusTotal vendors and listed on 1 blocklist. It is registered through Gname.com Pte. Ltd., created on 2026-01-23, and hosted on IP 2606:4700:3036::6815:4105 (US, AS13335 Cloudflare, Inc.) with an SSL certificate from Google Trust Services / WE1. Specific flagging sources include ADMINUSLabs, Criminal IP, alphaMountain.ai, Cluster25, and CRDF.
The domain is currently BANNED, with a GridinSoft trust score of 0 out of 100 and a DOM risk score of 10, indicating a severe and immediate threat. Users should avoid any interaction with this domain.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 1 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comVirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of t-mobile.fnirl.cc · checked Apr 23, 2026
证据与外部报告
PD-20260126-4EF8FA Recipient: complaint@gname.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。