vipshopb[.]top
“TK-SHOP”
vipshopb.top — Контент недоступен (HTTP 502). Олицетворение бренда: Apple; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 18/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CRDF); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 95/100. Регистратор: 域名國際有限公司.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain vipshopb.top has been identified as a brand impersonation threat specifically targeting Apple. Currently offline, this domain was created on December 26, 2025, and registered through 域名國際有限公司. It resolves to IP address 207.148.44.171 and lacks an SSL certificate, further indicating its malicious intent. The page title was observed as 'TK-SHOP,' which does not align with legitimate Apple services. PhishDestroy assesses this domain as elevated risk due to its clear impersonation of a trusted brand and its appearance in multiple threat intelligence sources.
Analysis of available data reveals that vipshopb.top has been flagged by 15 out of 95 security vendors on VirusTotal, indicating strong consensus among security tools regarding its malicious nature. Additionally, it appears in three threat intelligence pulses on AlienVault OTX and is listed on one security blocklist. These indicators collectively point to a domain designed for phishing or other fraudulent activities, likely aiming to deceive users into disclosing sensitive information. The domain is now offline, which reduces immediate risk, but its past activity and registration details warrant caution.
Given the domain's current offline status, the immediate threat is mitigated. However, users should remain vigilant against similar domains that may appear in the future. PhishDestroy recommends that users verify any communications claiming to be from Apple by directly visiting the official Apple website rather than clicking on links in emails or messages. Organizations should ensure that email filters and web security tools block domains associated with this threat. Monitoring for related domains with similar registration patterns or IP addresses is advised to prevent future attacks.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание