encontrar-my-iphone[.]us
encontrar-my-iphone.us — Ammantato · raggiungibile. Simulazione del marchio: Apple; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 9/91 (alphaMountain.ai, BitDefender, CRDF, Fortinet, G-Data); cloaking observed; PhishDestroy score 93/100.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain encontrar-my-iphone.us was observed resolving to the IP address 207.174.215.249, which is registered to AS46606 Unified Layer in the United States. The hosting infrastructure is served by the name servers ns1.md-35.webhostbox.net and ns2.md-35.webhostbox.net, a pair commonly associated with shared-hosting environments used for malicious campaigns. The site presents a Let's Encrypt YR2 certificate, a freely issued TLS credential that does not provide any indication of legitimacy. VirusTotal has recorded nine positive detections out of ninety-one scanners, demonstrating that a minority of security engines have identified malicious behavior linked to the domain.
Gridinsoft assigns a trust score of zero out of one hundred, and the domain appears on at least one public blocklist, with PhishDestroy explicitly listing it as blocked. The listed scam type is brand impersonation targeting Apple, and the intelligence explicitly notes that the domain impersonates Apple. No Safe Browsing, Open Threat Exchange, or registrar information is available, and a page title has not been disclosed, leaving the exact content of the site undocumented.
As of the report date the domain has been taken offline, but the underlying IP and hosting resources remain active. Defensive recommendations include adding the domain and its resolved IP to URL and IP deny lists, monitoring for re-registration or new DNS records, and informing end-users that any unsolicited communications referencing "encontrar-my-iphone.us" should be treated as fraudulent. Continuous scanning with multi-engine services is advised to capture any future changes in the detection profile.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi di VirusTotal
Dati e relazioni esterne
PD-20260621-733DC2 Recipient: abuse@publicdomainregistry.com Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo