mail[.]locate-idevice[.]us
“iCloud”
mail.locate-idevice.us — Прикритий · доступний. Уособлення бренду: Apple; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 8/91 (alphaMountain.ai, Fortinet, G-Data, Google Safebrowsing, Gridinsoft); URLQuery 2 det.; URLScan malicious verdict; cloaking observed; PhishDestroy score 93/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, mail.locate-idevice.us, poses a direct threat to Apple device users by impersonating legitimate iCloud login pages. The site is designed to harvest Apple IDs and passwords, which can lead to unauthorized access to personal data, device tracking, or financial fraud. Victims may receive deceptive emails or messages claiming their device has been located or their account requires verification, redirecting them to this fraudulent domain. Analysis indicates the domain is actively flagged by 7 out of 95 security vendors on VirusTotal, confirming its malicious intent. The site uses a Let's Encrypt SSL certificate, a common tactic among phishing operators to appear legitimate. It resolves to the IP address 162.144.180.56, which has been associated with other phishing campaigns. The domain's infrastructure and naming convention—specifically the use of 'locate-idevice'—strongly suggest it is targeting users of Apple's Find My service. If you or someone you know has visited mail.locate-idevice.us or entered credentials on this site, immediate action is required. First, change the Apple ID password using a trusted device and enable two-factor authentication if not already active. Review recent account activity for unauthorized logins or changes. Monitor linked devices for unusual behavior, such as unexpected location tracking or remote locks. Report the incident to Apple Support and consider scanning the device used to access the site for malware. Avoid clicking on any links in suspicious emails or messages, and verify the legitimacy of any communication claiming to be from Apple by contacting official support channels.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Apple MapKit JS lets you embed interactive maps directly into your websites across platforms and operating systems, including iOS and Android.
developer.apple.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіAkamai is global content delivery network (CDN) services provider for media and software delivery, and cloud security solutions.
akamai.com 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of mail.locate-idevice.us · checked Jun 29, 2026
Докази та зовнішні звіти
PD-20260629-C7EB0E Recipient: abuse@bluehost.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога