MALICIOUS — CRITICAL
apps-store[.]im
18 of 92 security engines flagged the domain; 1 public blocklist listed it (CryptoFirewall); the latest stored check returned HTTP 404.
- VirusTotal
- 18/92
- Blocklists
- 1 · CryptoFirewall
- 可用性
- クローク済み · 到達可能 · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
apps-store.im — クローク済み · 到達可能 (HTTP 404). 詐欺タイプ: Generic Phishing. 証拠の概要: VirusTotal 18/92 (ADMINUSLabs, alphaMountain.ai, BitDefender, Certego, Chong Lua Dao); URLQuery 3 alerts; 1 external blocklist match (CryptoFirewall); cloaking observed; PhishDestroy score 95/100.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
Evidence Digest
apps-store.im is classified critical with an evidence score of 95/100. 18 of 92 security engines flagged the domain; 1 public blocklist listed it (CryptoFirewall). Registered 15 May 2026, hosted on 103.138.194.35 (Skycloud Computing co., Ltd., TW). The latest stored check on 9 Aug 2026 returned HTTP 404 and includes a capture.
Stored generated summary (templated)openai · 2026年7月7日
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
PhishDestroy identifies apps-store.im as a confirmed generic phishing domain, now taken offline. The site posed as a login page under the title '账号登录 - xintai', likely targeting users of a Chinese service. Its current offline status indicates it was actively used for credential theft before being shut down.
Technical analysis reveals that the domain was created on May 15, 2026, and resolves to IP address 103.138.194.35. It is flagged by 18 out of 95 VirusTotal security vendors and appears on 2 security blocklists. The SSL certificate was issued by Let's Encrypt (R13), which is commonly abused by malicious actors due to its free and automated issuance process. These indicators collectively confirm the domain's malicious intent and elevated risk level.
Given that the domain is now offline, the immediate threat is neutralized. However, users who may have interacted with the site should change any credentials entered and monitor accounts for suspicious activity. PhishDestroy recommends enabling multi-factor authentication on all accounts and avoiding similar domains with misspellings or unusual TLDs. Stay vigilant and report any suspicious login pages to security teams.
データの網羅性13 recorded checks
ネットワークセキュリティインテリジェンス
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | apps-store.im |
malicious | Sinkholed |
| Hagezi Threat Feed | apps-store.im |
malicious | Sinkholed |
| DNS4EU | apps-store.im |
malicious | Sinkholed |
脅威対応 Pipeline
公開ブロックリスト登録状況
使用技術 · 1 identified
jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 信頼度 100%VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of apps-store.im · checked May 15, 2026
証拠および外部報告書Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。