tap3793ywk[.]cc
“苹果”
tap3793ywk.cc — Encoberto · alcançável. Resumo das evidências: VirusTotal 16/91 (ADMINUSLabs, Criminal IP, AILabs (MONITORAPP), alphaMountain.ai, BitDefender); CF Radar malicious; cloaking observed; PhishDestroy score 100/100. Registrador: GoDaddy.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of tap3793ywk.cc indicates a high‑risk, active generic phishing operation. The domain was registered on June 30, 2025 through GoDaddy.com, LLC and has no TLS certificate, returning HTTP 200 for the root request. The page title returned by the server is the Chinese term "苹果", but no further content has been publicly disclosed, leaving the specific luring technique uncertain.
Infrastructure inspection shows that tap3793ywk.cc resolves to the IPv4 address 38.182.168.147, which belongs to AS40065 (CNSERVERS LLC) and is geolocated in the United States. The domain is serviced by Cloudflare DNS, using ali.ns.cloudflare.com and piers.ns.cloudflare.com as its authoritative nameservers, a pattern commonly observed in fast‑flux phishing deployments.
Reputation data reinforces the malicious classification: the domain is listed on two public blocklists (PhishDestroy and PhishingDB), appears in fifteen AlienVault OTX threat‑intel pulses, and has been flagged by fourteen of ninety‑five VirusTotal security vendors. Additional scoring systems assign a zero out of one hundred trust rating (Gridinsoft) and a high‑risk posture (risk level: high). These signals collectively confirm that the infrastructure is being actively leveraged for credential‑stealing or other fraudulent activity.
Defenders should immediately block tap3793ywk.cc at perimeter firewalls and DNS resolvers, and consider sink‑holing the associated IP address 38.182.168.147 to disrupt further command‑and‑control traffic. Continuous monitoring for DNS queries or HTTP requests to this domain is advised, as well as updating email security gateways with the latest phishing signatures. End‑user education campaigns should warn users that any unsolicited communications referencing "苹果" may be part of this campaign, even though the exact page content has not been publicly verified.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências arquivadas
Análise da configuração do site
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo