الانتقال إلى تقرير الأمان
Checked 09/08/2026 Ref 2E90AE3F

MALICIOUS — CRITICAL

tap4094y5e[.]cc

17 of 91 security engines flagged the domain; the latest stored check returned HTTP 200.

100/100 evidence score · Critical
VirusTotal
17/91
Blocklists
No stored match
التوفر
مغطى بعباءة · يمكن الوصول إليه · HTTP 200
Report / Add Evidence Appeal this listing
2026-03-04 22:10 UTCمغطى بعباءة · يمكن الوصول إليه · HTTP 200

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 17. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
Jump to section
ملخص التقرير

tap4094y5e.cc — مغطى بعباءة · يمكن الوصول إليه (HTTP 200). ملخص الأدلة: VirusTotal 17/91 (ADMINUSLabs, Criminal IP, AILabs (MONITORAPP), alphaMountain.ai, BitDefender); cloaking observed; PhishDestroy score 100/100. مسجّل النطاق: GoDaddy.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

Evidence Digest

Ref 2E90AE3F

tap4094y5e.cc is classified critical with an evidence score of 100/100. 17 of 91 security engines flagged the domain. Registered 30 Jun 2025 via GoDaddy.com, LLC, hosted on 38.182.168.147 (CNSERVERS, US, US). The latest stored check on 9 Aug 2026 returned HTTP 200 and includes a capture.

Stored generated summary (templated)grok · 12/07/2026

Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.

Analysis indicates that tap4094y5e.cc was registered on June 30, 2025 through GoDaddy.com, LLC and currently resolves to IP address 38.182.168.147 located in the United States under AS40065. The domain uses nameservers ali.ns.cloudflare.com and piers.ns.cloudflare.com along with an SSL certificate issued by ZeroSSL ECC Domain Secure Site CA. HTTP responses return status 200 and the server advertises HSTS. The page title found is 苹果, directly indicating targeting of Apple. The domain remains active as of the July 12, 2026 report date and is listed on two security blocklists including PhishDestroy and PhishingDB.

VirusTotal reports detections from 17 out of 95 vendors while AlienVault OTX references the domain in 15 threat intelligence pulses. Gridinsoft assigns a trust score of 0 out of 100. These metrics align with the assigned generic_phishing classification and high risk level. Infrastructure details such as the CNSERVERS LLC origin and Cloudflare nameservers are consistent with patterns observed in other flagged domains but do not by themselves confirm malicious intent without additional context.

Exact page content and any login forms or redirection logic have not been retrieved in this assessment, leaving the precise impersonation technique uncertain beyond the recorded page title. Defenders should incorporate the domain and its resolving IP 38.182.168.147 into blocklists and monitoring rules while reviewing logs for connections from internal hosts. Continued observation of the listed nameservers and certificate issuer can support correlation with newly registered domains sharing similar infrastructure. Regular updates from the cited blocklists and OTX pulses provide the most direct means to track persistence or migration of this asset.

VirusTotal
VirusTotal
17 det.
OTX references
DNS Security
2/14
شهادة TLS
ZeroSSL ECC Domain Secure Site CA
العمر
1.1 yr
الحالة المرصودة
مغطى بعباءة · يمكن الوصول إليه 200
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات12 recorded checks
VirusTotal 17 / 91 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats checked — no match recorded OTX 15 community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS 2/14 TLS valid certificate, 76d WHOIS 14 mo old لقطة شاشة لقطة خارجية سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
DNS Provider Blocks 2 / 14
Cloudflare Family Cloudflare Security

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
13/15

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN Xcdn · AS40065 CNSERVERS, US
IP Context CDN shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مسجّل النطاق GoDaddy US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@nebulaglobal.net, abuse@godaddy.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ tap4094y5e.cc →
عنوان IP 38.182.168.147 CDN
الموقع الجغرافيUS Los Angeles, US
الشبكةAS40065 · CNSERVERS LLC
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التسجيلتم إنشاؤه 30/06/2025 Expires 30/06/2026
Cloaking Cloaking Detected Status split · score 4/6
alive_content: raw=ok; http=200; via=https_proxy
checked 09/08/2026
Elapsed Since First Report 150 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: مغطى بعباءة · يمكن الوصول إليه.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
حالة HTTP200
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف17/10/2025
DOM Analysisanalyzed 11/03/2026score 100/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://tap4094y5e.cc/
خوادم الأسماءali.ns.cloudflare.compiers.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 14/02/2026scanned 11/03/2026
عنوان الصفحة
苹果
شهادة TLS
Valid transport encryption · صادرة عن ZeroSSL ECC Domain Secure Site CA · valid for 76 days
التقنيات · 1 identified
HSTS
الأمن

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

17 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 17 detections
ADMINUSLabs
Criminal IP
AILabs (MONITORAPP)
alphaMountain.ai
BitDefender
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
كاسبرسكي
Lionic
SOCRadar
سوفوس
VIPRE
Webroot

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of tap4094y5e.cc · checked Mar 1, 2026

64
Needs Work
Performance
FCP
3.36s
First Contentful Paint
LCP
4.64s
Largest Contentful Paint
CLS
0.16
Cumulative Layout Shift
TBT
31ms
Total Blocking Time
SI
6.5s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك
تضمين هذا التقريرRead-only HTML widget
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/tap4094y5e.cc"
  title="PhishDestroy threat report for tap4094y5e.cc"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>