الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 12. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

support-icloudfinds[.]us

“iCloud”

حكم التهديد حرجة 88/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 12/91 Spamhaus DBL: DBL_PHISH انتحال العلامة التجارية: Apple
21/06/2026 Apple 1 Report Sent
ملخص التقرير

support-icloudfinds.us — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Apple; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 12/91 (alphaMountain.ai, Fortinet, G-Data, Gridinsoft, SOCRadar); URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 88/100.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
E3211E81
الدرجة
88/100

This domain, support-icloudfinds.us, poses a high-risk brand impersonation threat specifically targeting Apple users. The site mimics Apple’s iCloud login portal, designed to harvest credentials, payment details, and personal data from unsuspecting victims. Infrastructure analysis reveals the domain is engineered to exploit trust in Apple’s branding, using deceptive subdomains and visual elements identical to official Apple services. The primary objective is credential theft, which can lead to unauthorized account access, financial fraud, or further exploitation through compromised devices linked to the victim’s Apple ID. Evidence of malicious intent is substantiated by multiple technical indicators. The domain is flagged by 12 out of 95 security vendors on VirusTotal, indicating widespread detection as a phishing resource. It resolves to the IP address 207.174.215.249, hosted under AS46606 (Unified Layer) in the United States, a network frequently associated with fraudulent activities. The domain employs a Let’s Encrypt SSL certificate (YR2), which, while providing encryption, is commonly abused by threat actors to lend a false sense of legitimacy. Additionally, it appears on at least one security blocklist and is actively blocked by enterprise-grade threat intelligence platforms. The domain’s infrastructure and hosting provider further corroborate its classification as a high-risk resource. Users who have visited support-icloudfinds.us or entered credentials on the site should take immediate action to mitigate potential damage. First, revoke access to any sessions or devices linked to the compromised Apple ID via Apple’s official account recovery portal. Enable two-factor authentication (2FA) if not already active, and monitor the account for unauthorized transactions or changes. Reset passwords for any other services where the same credentials may have been reused. If financial information was entered, contact the relevant institution to report potential fraud and request account monitoring. Finally, scan the device used to access the site for malware, as phishing pages may deploy additional payloads or redirect to exploit kits. Users should report the domain to their security team or threat intelligence platforms to aid in broader mitigation efforts.

VirusTotal
VirusTotal
12 det.
شهادة TLS
Let's Encrypt / YR2
الحالة المرصودة
المحتوى غير متوفر 502
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات VirusTotal 12 / 91 URLQuery checked — no detections recorded PhishStats لم يتم التحقق منها OTX no community references رادار CF no data URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 35d WHOIS not parsed لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
12/12
Sent Report Recorded
Stored sent-report record for domain registrar, hosting provider, 1 abuse contact
abuse@publicdomainregistry.com
21/06/2026

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Apple report ↗
الخادم / ASN Apache · AS46606 Unified Layer
سمعة عنوان IP abuse score 0/100 0 reports checked 21/06/2026
مسجّل النطاق غير معروف
جهة الإبلاغ عن إساءة الاستخدامabuse@publicdomainregistry.com
عنوان IP 207.174.215.249 US
الموقع الجغرافيUS Provo, US
الشبكةAS46606 · Unified Layer
حالة HTTP502 Error
الوقت حتى أول تعذّر للوصول 9h
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف21/06/2026
DOM Analysisanalyzed 21/06/2026score 88/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://support-icloudfinds.us/ICL264
خوادم الأسماءns1.md-35.webhostbox.netns2.md-35.webhostbox.net
TLS Fingerprint
TLS Observationvalid from 20/06/2026scanned 21/06/2026
TLS SAN Domains22-icloud.com33-icloud.comcloud-lostdevice.usdevice-detect.usdevice-ifind.usdevice-iphone.lifedevicelocate.usencontrar-my-iphone.usfind-phone-location.usfindmy-2.comfindmy-support1.comfindmy-supportjl.usfindmy2.supportflndme-com.infoflndmeapple.info+18
Case ID
عنوان الصفحة
iCloud
شهادة TLS
Valid transport encryption · صادرة عن Let's Encrypt / YR2 · valid for 35 days
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

12 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 12 detections
alphaMountain.ai
Fortinet
G-Data
Gridinsoft
SOCRadar
سوفوس
Webroot

الأدلة والتقارير الخارجية

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260621-C25F32 Recipient: abuse@publicdomainregistry.com
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 123.4 KB
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/support-icloudfinds.us"
  title="PhishDestroy threat report for support-icloudfinds.us"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>