tkshangc[.]cc
“TikTok Shop”
Résumé des preuves
This domain, tkshangc.cc, poses a direct threat to users by impersonating Apple through a fraudulent login or credential harvesting scheme. The site mimics Apple’s branding to deceive visitors into entering sensitive account details, which are then captured by threat actors for unauthorized access, financial fraud, or identity theft. The page title, 'TikTok Shop,' further obscures its true purpose, attempting to blend into legitimate e-commerce traffic while executing phishing operations. Users who interact with this site risk account compromise, data exfiltration, or subsequent malware deployment. Analysis indicates the domain was registered on December 02, 2025, through GoDaddy.com, LLC, a common registrar for both legitimate and malicious domains. It resolves to the IP address 45.194.37.159, hosted under AS138995 (Antbox Networks Limited) in Hong Kong, a provider frequently associated with phishing infrastructure. The domain lacks an SSL certificate, a red flag for any site handling user credentials. VirusTotal detection shows 18 out of 95 security vendors flagging tkshangc.cc as malicious, with blocklist presence confirmed by PhishDestroy and PhishingDB. The combination of recent registration, brand impersonation, and lack of encryption strongly supports its classification as a phishing site. If you visited tkshangc.cc or entered any information on the site, immediate action is required. First, revoke any active sessions on Apple devices and change your Apple ID password using a trusted device. Enable multi-factor authentication if not already active. Monitor linked accounts, including email and financial services, for unauthorized activity. Scan the device used to access the site for malware, as phishing pages may deliver secondary payloads. Report the incident to Apple’s official security team and consider notifying local cybersecurity authorities or consumer protection agencies to aid in tracking the threat.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif