t-mobile[.]urimk[.]cc
“Welcome to nginx!”
t-mobile.urimk.cc — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 16/93 (ADMINUSLabs, BitDefender, Cluster25, CRDF, ESET); PhishDestroy score 95/100. 注册商: Gname.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, t-mobile.urimk.cc, is a malicious impersonation site. The page title is "Welcome to nginx!", indicating a default web server installation, while the scam type is Impersonation of the brand x.com. The site poses a threat by attempting to deceive visitors into believing it represents a legitimate service, potentially for credential theft or malware distribution.
Technical evidence shows the site has a high detection rate, flagged by 16 out of 95 VirusTotal vendors, including ADMINUSLabs, BitDefender, Cluster25, CRDF, and ESET. It is on 1 blocklist. The domain is hosted on IP 104.21.47.126 in the US, under AS13335 Cloudflare, Inc. It was registered on 2026-02-21 through Gname.com Pte. Ltd., with nameservers denver.ns.cloudflare.com and lara.ns.cloudflare.com. The site has no SSL certificate.
The current status is DOWN/OFFLINE. GridinSoft trust rating is 0 out of 100, and the DOM risk score is 10, indicating a critical risk level.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
PD-20260205-67C9AA Recipient: complaint@gname.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。