t-mobile[.]sdfht[.]icu
“Welcome to nginx!”
t-mobile.sdfht.icu — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 15/93 (Criminal IP, BitDefender, CRDF, CyRadar, ESET); Spamhaus DBL_PHISH; PhishDestroy score 100/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain t-mobile.sdfht.icu presents a Welcome to nginx! page while impersonating the brand x.com, indicating a scam type of impersonation. The threat posed is that users may be misled into believing the site is associated with T-Mobile or X, potentially facilitating phishing or credential theft.
Technical evidence: VirusTotal flags the domain with 15 detections out of 95 vendors, including Criminal IP, BitDefender, CRDF, CyRadar, and ESET. It appears on 1 blocklist. The IP address 104.21.54.43 is located in the US and hosted by AS13335 Cloudflare, Inc. The domain was created on 2026-02-21 and uses SSL certificate type WE1. The registrar is not specified in the data.
Current status: The site is down or offline. Risk levels are high: GridinSoft trust is 0 out of 100, ScamAdviser trust is 1 out of 100, and the domain risk score is 73. The combination of low trust scores, multiple vendor detections, and impersonation of a known brand indicates a significant security threat.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
SHORTDOT 域名区 · 公开证据
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。