# onlineicloud.support — MALICIOUS > PhishDestroy identifies onlineicloud.support as a brand impersonation site impersonating Apple. VirusTotal flags 15/95 security vendors. Check before clicking. ## Summary PhishDestroy identifies onlineicloud.support as an active brand impersonation domain masquerading as Apple, posing an elevated risk to users seeking genuine iCloud services. This threat leverages Apple’s branding to deceive visitors into entering credentials or downloading malicious content under the guise of legitimate support. The domain’s recent creation and multiple security vendor detections indicate a high likelihood of ongoing malicious operations targeting Apple users. This domain was flagged by 15 out of 95 VirusTotal security vendors, indicating partial but significant detection across major threat intelligence platforms. Registered through Gransy, s.r.o., the domain resolves to IP address 188.114.96.3 and was created on February 17, 2026. The use of a Let’s Encrypt SSL certificate suggests an attempt to appear legitimate, while the low trust score and active status highlight its malicious intent. The Apple brand impersonation is clear, with no legitimate connection to the tech giant’s official services. Users should avoid interacting with onlineicloud.support entirely due to its elevated risk and confirmed malicious intent. If accidentally accessed, users should not enter any personal or credential information and should immediately scan their device for malware. Organizations and individuals are advised to block the domain at the network level and report it to relevant threat intelligence feeds. Always verify the authenticity of support domains by cross-checking with official Apple channels. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) - Target brand: Apple ## Domain Intelligence - Registered: 2026-02-17 04:03:08 - Registrar: Gransy, s.r.o. - IP: 188.114.96.3 ## Detection Status - VirusTotal: 15 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/3cea011c-851e-43dd-be3e-7c46cad9123c - PhishDestroy: https://phishdestroy.io/domain/onlineicloud.support/ - LLM endpoint: https://phishdestroy.io/domain/onlineicloud.support/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/onlineicloud.support/ Last updated: 2026-03-22