rm9977hj[.]netlify[.]app
“Contact - Official Apple”
rm9977hj.netlify.app — Conteúdo indisponível. Representação da marca: Apple; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 18/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 100/100. Registrador: Netlify.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain is flagged as a high-risk brand impersonation threat specifically targeting Apple users. Analysis indicates the infrastructure is designed to deceive visitors into believing they are interacting with an official Apple contact portal, facilitating credential theft or unauthorized account access. The page title, 'Contact - Official Apple,' reinforces the false legitimacy of the site. Infrastructure analysis reveals the domain rm9977hj.netlify.app is registered through Netlify and resolves to the IP address 35.157.26.135. The SSL certificate is issued by DigiCert Inc under the 'DigiCert Global G2 TLS RSA SHA256 2020 CA1' chain. As of the latest assessment, the domain remains active and is detected by 15 out of 95 security vendors on VirusTotal. It appears on one security blocklist and is flagged by Google Safe Browsing for phishing activity. No historical registration data or creation date was provided, but the current indicators confirm its malicious intent. Mitigation steps for this brand impersonation threat include immediate blocking of the domain and associated IP address at the network perimeter. Organizations should deploy browser-based warnings for users attempting to access the domain and implement multi-factor authentication (MFA) to reduce the risk of credential compromise. Security teams should monitor for similar Netlify-hosted subdomains impersonating Apple or other high-value brands, as this infrastructure is frequently abused for phishing campaigns. End-users should be educated to verify domain authenticity before entering credentials, particularly on pages claiming to represent official contact portals.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | rm9977hj.netlify.app |
malicious | Sinkholed |
| OpenDNS | rm9977hj.netlify.app |
phishing | Phishing Block |
| DNS4EU | rm9977hj.netlify.app |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo