subwaysurferapk[.]io
“Subway Surfers Mod APK v3.44.0 Premium Unlimited money 100% Working”
Résumé des preuves
subwaysurferapk.io is an active high‑risk domain that masquerades as Apple. The site resolves to the IPv6 address 2a02:4780:6:1885:0:2e70:ff31:8, which is mapped to an Indonesian host under AS47583 (Hostinger International Limited). The domain was registered on 2024-10-30 through ENOM, INC., and uses a Let’s Encrypt R13 certificate. The web server returns HTTP 200 and hosts a WordPress installation backed by MySQL and PHP, with additional components such as Google Sign-in, LiteSpeed, Lightbox and jQuery. The page title observed is "Subway Surfers Mod APK v3.44.0 Premium Unlimited money 100% Working", indicating a mobile‑app promotion unrelated to Apple, suggesting a deceptive lure. The domain is listed on a single security blocklist, has a Gridinsoft trust score of 0/100, and one of 95 VirusTotal scanners flagged it as malicious. Nameservers point to dns-parking.com, a typical parking service. While the exact malicious payload is not yet disclosed, the combination of a low trust score, presence on a blocklist, and the tech_support scam classification warrants immediate defensive action. Organizations should add subwaysurferapk.io to URL filtering and firewall deny lists, monitor outbound connections to its IPv6 address, and enforce email and web gateway policies that block any content referencing the observed page title or the Apple brand from this host. Continuous threat intel monitoring is recommended to detect any evolution of the payload or additional indicators.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 13/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
VirusTotal
0 → 1
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of subwaysurferapk.io · checked Mar 2, 2026
Analyse de la configuration du site
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif