t-mobile[.]xplyh[.]cc
t-mobile.xplyh.cc — 内容不可用 (HTTP 502). 品牌冒充:Genericcloudflare. 证据摘要: VirusTotal 18/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, Cluster25, CRDF); URLScan malicious verdict; PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain t-mobile.xplyh.cc is associated with an elevated risk level, specifically identified as a generic phishing threat. Such threats typically aim to deceive users into divulging sensitive information by imitating legitimate entities. The current analysis assigns an elevated risk due to the potential for significant harm should users engage with this domain unknowingly.
According to current intelligence, the domain resolves to the IP address 188.114.96.3, which is located in the United States under the jurisdiction of AS13335, managed by Cloudflare, Inc. The domain was created on February 21, 2026, suggesting that it may be part of future-focused phishing campaigns. On VirusTotal, 15 out of 95 security vendors have flagged this domain, indicating a notable level of recognition and concern within the cybersecurity community. Moreover, this domain is listed on one security blocklist and has been blocked by PhishDestroy. This status demonstrates a consensus on its potentially harmful nature. The SSL certificate for the domain is identified as WE1, which might lack the robust security features necessary to safeguard sensitive information.
To mitigate the risks associated with this phishing threat, users should avoid engaging with the domain entirely. If contact with the site has occurred, it is advisable to conduct a thorough review of any information that may have been shared and to employ enhanced security measures such as multifactor authentication and regular monitoring of accounts for unauthorized access. Organizations should ensure their cybersecurity infrastructure is robust, including employing up-to-date phishing detection systems and employee awareness training to recognize and report phishing attempts promptly. Additionally, users can improve their defenses by using browser extensions and security tools that warn about known malicious sites.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。