tkshangc[.]cc
“TikTok Shop”
tkshangc.cc — Erro no servidor (HTTP 502). Representação da marca: Apple; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 16/91 (ADMINUSLabs, AILabs (MONITORAPP), alphaMountain.ai, BitDefender, CRDF); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 95/100. Registrador: GoDaddy.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, tkshangc.cc, poses a direct threat to users by impersonating Apple through a fraudulent login or credential harvesting scheme. The site mimics Apple’s branding to deceive visitors into entering sensitive account details, which are then captured by threat actors for unauthorized access, financial fraud, or identity theft. The page title, 'TikTok Shop,' further obscures its true purpose, attempting to blend into legitimate e-commerce traffic while executing phishing operations. Users who interact with this site risk account compromise, data exfiltration, or subsequent malware deployment. Analysis indicates the domain was registered on December 02, 2025, through GoDaddy.com, LLC, a common registrar for both legitimate and malicious domains. It resolves to the IP address 45.194.37.159, hosted under AS138995 (Antbox Networks Limited) in Hong Kong, a provider frequently associated with phishing infrastructure. The domain lacks an SSL certificate, a red flag for any site handling user credentials. VirusTotal detection shows 18 out of 95 security vendors flagging tkshangc.cc as malicious, with blocklist presence confirmed by PhishDestroy and PhishingDB. The combination of recent registration, brand impersonation, and lack of encryption strongly supports its classification as a phishing site. If you visited tkshangc.cc or entered any information on the site, immediate action is required. First, revoke any active sessions on Apple devices and change your Apple ID password using a trusted device. Enable multi-factor authentication if not already active. Monitor linked accounts, including email and financial services, for unauthorized activity. Scan the device used to access the site for malware, as phishing pages may deliver secondary payloads. Report the incident to Apple’s official security team and consider notifying local cybersecurity authorities or consumer protection agencies to aid in tracking the threat.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo