gov-icloud[.]com
“iCloud”
Kanıt özeti
This domain, gov-icloud.com, is identified as a credential harvesting platform designed to impersonate Apple's iCloud service. Analysis indicates the site presents a counterfeit iCloud login interface, tricking users into submitting their Apple ID credentials. The objective is to capture sensitive authentication details, which can lead to unauthorized account access, data exfiltration, or further exploitation in targeted attacks. The use of a familiar brand interface, combined with SSL encryption, increases the likelihood of successful deception, particularly among users who may not scrutinize domain names closely. Infrastructure analysis reveals the domain was registered on April 28, 2026, through the registrar Gransy, s.r.o. It resolves to the IP address 31.148.99.121, hosted under the entity FOP Hornostay Mykhaylo Ivanovych in the United Kingdom. The domain is secured with a Let's Encrypt SSL certificate (R13), a common tactic to lend an air of legitimacy. Detection metrics show 23 out of 95 security vendors on VirusTotal flagged the domain as malicious, while it appears on one additional security blocklist. The domain has since been taken offline, though its prior activity remains a documented threat. Users who may have interacted with gov-icloud.com should take immediate remedial action. First, reset Apple ID credentials through Apple's official authentication portal, ensuring the use of multi-factor authentication. Review recent account activity for unauthorized access or transactions. Monitor linked devices and services for signs of compromise, such as unfamiliar logins or data modifications. If financial or personal data was entered, consider placing fraud alerts with relevant institutions. Organizations should update internal blocklists to include this domain and its associated IP to prevent future exposure.
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | gov-icloud.com |
malicious | Sinkholed |
| Cloudflare DNS | gov-icloud.com |
malicious | Sinkholed |
| Hagezi Threat Feed | gov-icloud.com |
malicious | Sinkholed |
| DNS4EU | gov-icloud.com |
malicious | Sinkholed |
| OpenDNS | gov-icloud.com |
phishing | Phishing Block |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
1 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of gov-icloud.com · checked Apr 28, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin