r982820[.]pages[.]dev
“Apple”
اكتشاف محفوظ
تنبيه إخفاء المحتوى
- نوع الإخفاء
bot_redirect_safe- درجة الإخفاء
- 4/6
ملخص الأدلة
The domain r982820.pages.dev is currently active and has been identified as a brand‑impersonation site targeting Apple. The page title returned by the server is “Apple”, and the site is listed on a single security blocklist, PhishDestroy, which has flagged it as malicious. The registration date of March 30 2026 and the use of Cloudflare‑provided nameservers (josephine.ns.cloudflare.com, malcolm.ns.cloudflare.com) indicate a newly created infrastructure. Network analysis shows the domain resolves to IP 172.66.47.100, an address owned by Cloudflare, Inc. and geolocated to Canada. The HTTPS certificate is issued by Google Trust Services under the WE1 label, and the site presents HTTP 301 redirects. Detected client‑side technologies include Apple MapKit JS, HSTS enforcement, and Akamai delivery services, suggesting the page is crafted to resemble legitimate Apple content while leveraging third‑party performance optimizations. Reputation scoring from Gridinsoft assigns a trust score of 0 / 100, reflecting a high likelihood of abuse. VirusTotal currently reports zero detections across 95 engines, but the lack of detections is not evidence of safety given the recent creation date and the low trust score. The sole blocklist entry and the presence of brand‑specific assets indicate a focused impersonation campaign rather than a broad‑based spam operation. Defenders should add r982820.pages.dev to local deny lists and configure network controls to block traffic to the associated IP address. Continuous monitoring of DNS changes and certificate updates is advised, as the attacker could pivot to new IPs or certificates while retaining the same domain. Incident response teams should also monitor for similar pages that use Apple MapKit JS and HSTS in conjunction with Akamai, as these components may serve as a pattern for future impersonation attempts.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 10/08/2026
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of r982820.pages.dev · checked Mar 30, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب