sap3362wcl[.]cc
“苹果”
sap3362wcl.cc — Masqué · accessible. Usurpation de l'identité de la marque : Apple; Type d'arnaque : Generic Phishing. Résumé des preuves: VirusTotal 1/91 (SOCRadar); cloaking observed; PhishDestroy score 65/100. Bureau d’enregistrement: GoDaddy.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain sap3362wcl.cc has been identified as a brand impersonation threat specifically targeting Apple, with the page title displaying the Chinese word for Apple (苹果). This domain is currently offline, but its recent activity and technical indicators suggest a high-risk phishing operation designed to deceive users into believing they are interacting with an official Apple service. The domain was created on September 14, 2025, and registered through GoDaddy.com, LLC, a common registrar for malicious domains due to its ease of use. It resolves to IP address 38.182.168.147, which may host additional phishing sites.
PhishDestroy's analysis reveals that sap3362wcl.cc has been flagged by 16 out of 95 security vendors on VirusTotal, indicating broad recognition of its malicious nature. The domain appears on two security blocklists and has been found in 17 threat intelligence pulses on AlienVault OTX, underscoring its widespread distribution in the cybercriminal ecosystem. The SSL certificate was issued by ZeroSSL, a free certificate authority often abused by phishers to create a veneer of legitimacy. These technical details paint a clear picture of a well-orchestrated phishing campaign aimed at harvesting Apple account credentials or personal information.
Given that the domain is currently offline, the immediate risk of interaction is low, but users should remain vigilant for similar domains that may appear in the future. PhishDestroy recommends that any users who may have visited sap3362wcl.cc or entered credentials immediately change their Apple account passwords and enable two-factor authentication. Additionally, organizations should block the IP address 38.182.168.147 and monitor for any related domains registered through GoDaddy. Regular security awareness training on identifying brand impersonation attempts is crucial to prevent future compromises.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 1 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif