getsupport-idcase84632[.]click
“Access Denied”
getsupport-idcase84632.click — Contenu indisponible. Usurpation de l'identité de la marque : Apple; Type d'arnaque : Tech Support Scam. Résumé des preuves: VirusTotal 16/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLQuery 2 alerts; URLScan malicious verdict; Spamhaus DBL_SPAM; PhishDestroy score 95/100. Bureau d’enregistrement: Sav.com.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain getsupport-idcase84632.click was registered through Sav.com, LLC and first observed on February 17, 2026. Infrastructure analysis shows it resolves to the IPv4 address 50.6.199.153, an Oracle Corporation‑owned hosting block located in the United States. The host runs Apache HTTP Server and does not present an SSL/TLS certificate, meaning all traffic is served over plain HTTP. DNS resolution is provided by dns1.dnspremium.pro and dns2.dnspremium.pro. When queried, the only visible page element is the title “Access Denied”, indicating that the site is currently not serving content to the public.
Dynamic analysis on VirusTotal recorded 16 of 94 scanning engines flagging the domain as malicious, and the site appears on a single external blocklist. The Gridinsoft trust score is 0 out of 100, reinforcing the malicious assessment. The domain has been classified as a “Tech Support Scam”, a social‑engineering vector that typically coerces victims into granting remote access or paying for fraudulent support services. The site has already been taken offline and is listed as blocked by the PhishDestroy remediation service.
Defenders should add the fully qualified domain name and the associated IP address 50.6.199.153 to network‑level deny lists, DNS sinkhole configurations, and endpoint protection rule sets. Continuous monitoring of the dnspremium.pro name servers is advised, as the operators may reuse the same infrastructure for future campaigns. Because the site lacks HTTPS, any attempted connections can be intercepted for additional intelligence, but caution is required to avoid contaminating internal networks. Logging of HTTP request attempts to this domain will aid in detecting compromised hosts that may have previously interacted with the service.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 1 identified
Most widely used open-source HTTP server software.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of getsupport-idcase84632.click · checked Mar 24, 2026
Données factuelles et rapports externes
PD-20260324-D6F401 Recipient: abuse-contact@sav.com Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif