t-mobile[.]tiakcnb[.]cc
“Welcome to nginx!”
t-mobile.tiakcnb.cc — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 16/93 (Criminal IP, Chong Lua Dao, Cluster25, CRDF, Emsisoft); URLQuery 3 alerts; PhishDestroy score 95/100. 注册商: Gname.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain presents an elevated risk due to its brand impersonation of X.com, specifically designed to trick users into believing they are accessing a legitimate login portal. The threat is a classic credential harvesting scheme, where unsuspecting visitors may unknowingly submit their sensitive login information to malicious actors. PhishDestroy has classified this as a brand impersonation attack, and the domain is now offline, but similar variants may still be active.
Technical analysis reveals concerning indicators. VirusTotal flagged this domain with 16 out of 95 security vendors marking it as malicious, a significant detection rate. The domain was registered on February 21, 2026, through Gname.com Pte. Ltd., and it resolves to IP address 188.114.96.3. No SSL certificate was present, which is unusual for a legitimate site and further indicates phishing intent. The page title displayed only "Welcome to nginx!" suggesting a default or minimal setup. The domain appeared on one security blocklist, and PhishDestroy's own trust scoring system rated it as high risk. The unique seed for this analysis is 5523f8.
To protect against this specific threat, users should always verify the URL before entering credentials on any site claiming to be X.com. Bookmark the official website or use a trusted search engine to navigate there. If you have already visited this domain and entered any information, change your X.com password immediately and enable two-factor authentication. Report any suspicious domains to PhishDestroy for further investigation and blocking. Never click on links in unsolicited messages claiming to be from X.com, and always check for HTTPS and proper SSL certificates before logging in.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | t-mobile.tiakcnb.cc |
malicious | Sinkholed |
| DNS4EU | t-mobile.tiakcnb.cc |
malicious | Sinkholed |
| OpenDNS | t-mobile.tiakcnb.cc |
phishing | Phishing Block |
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
PD-20260131-8F78B6 Recipient: complaint@gname.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。