qoq[.]pfz[.]mybluehost[.]me
“iCloud”
qoq.pfz.mybluehost.me — Belum terverifikasi. Peniruan identitas merek: Apple; Jenis penipuan: Generic Phishing. Ringkasan bukti: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); CF Radar malicious; PhishDestroy score 95/100. Registrar: Domain.com - Network S….
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain is flagged as an elevated-risk brand impersonation threat targeting Apple iCloud users. Analysis indicates the site was designed to harvest credentials by mimicking the legitimate iCloud login interface, as evidenced by the page title 'iCloud' and confirmed brand impersonation classification. Infrastructure analysis reveals the domain qoq.pfz.mybluehost.me was registered on October 05, 2016, through Domain.com - Network Solutions, LLC. It resolves to the IP address 50.6.34.21, hosted on AS31898 (Oracle Corporation) in Germany. Detection metrics show 18 out of 95 security vendors on VirusTotal flagged the domain as malicious, while it appears on two additional security blocklists. The SSL certificate is issued by Sectigo Limited under the Sectigo Public Server Authentication CA DV R36 chain. The domain has since been taken offline, though it was previously blocked by multiple threat intelligence feeds. Mitigation against this specific threat type involves implementing domain-based email filtering rules to quarantine messages containing references to qoq.pfz.mybluehost.me or its resolved IP. Network administrators should update web proxy and DNS filtering policies to block resolution of the domain and its associated IP. End users should be trained to verify domain authenticity before entering credentials, particularly when prompted by unsolicited login requests. Organizations are advised to monitor for credential reuse attempts, as harvested credentials from this campaign may be leveraged in subsequent account takeover attempts.
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Analisis VirusTotal
Bukti Terarsip
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive