tkshangc[.]cc
“TikTok Shop”
Riepilogo delle prove
This domain, tkshangc.cc, poses a direct threat to users by impersonating Apple through a fraudulent login or credential harvesting scheme. The site mimics Apple’s branding to deceive visitors into entering sensitive account details, which are then captured by threat actors for unauthorized access, financial fraud, or identity theft. The page title, 'TikTok Shop,' further obscures its true purpose, attempting to blend into legitimate e-commerce traffic while executing phishing operations. Users who interact with this site risk account compromise, data exfiltration, or subsequent malware deployment. Analysis indicates the domain was registered on December 02, 2025, through GoDaddy.com, LLC, a common registrar for both legitimate and malicious domains. It resolves to the IP address 45.194.37.159, hosted under AS138995 (Antbox Networks Limited) in Hong Kong, a provider frequently associated with phishing infrastructure. The domain lacks an SSL certificate, a red flag for any site handling user credentials. VirusTotal detection shows 18 out of 95 security vendors flagging tkshangc.cc as malicious, with blocklist presence confirmed by PhishDestroy and PhishingDB. The combination of recent registration, brand impersonation, and lack of encryption strongly supports its classification as a phishing site. If you visited tkshangc.cc or entered any information on the site, immediate action is required. First, revoke any active sessions on Apple devices and change your Apple ID password using a trusted device. Enable multi-factor authentication if not already active. Monitor linked accounts, including email and financial services, for unauthorized activity. Scan the device used to access the site for malware, as phishing pages may deliver secondary payloads. Report the incident to Apple’s official security team and consider notifying local cybersecurity authorities or consumer protection agencies to aid in tracking the threat.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 12/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo