vipshopb[.]top
“TK-SHOP”
vipshopb.top — Контент недоступний (HTTP 502). Уособлення бренду: Apple; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 18/93 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CRDF); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: 域名國際有限公司.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain vipshopb.top has been identified as a brand impersonation threat specifically targeting Apple. Currently offline, this domain was created on December 26, 2025, and registered through 域名國際有限公司. It resolves to IP address 207.148.44.171 and lacks an SSL certificate, further indicating its malicious intent. The page title was observed as 'TK-SHOP,' which does not align with legitimate Apple services. PhishDestroy assesses this domain as elevated risk due to its clear impersonation of a trusted brand and its appearance in multiple threat intelligence sources.
Analysis of available data reveals that vipshopb.top has been flagged by 15 out of 95 security vendors on VirusTotal, indicating strong consensus among security tools regarding its malicious nature. Additionally, it appears in three threat intelligence pulses on AlienVault OTX and is listed on one security blocklist. These indicators collectively point to a domain designed for phishing or other fraudulent activities, likely aiming to deceive users into disclosing sensitive information. The domain is now offline, which reduces immediate risk, but its past activity and registration details warrant caution.
Given the domain's current offline status, the immediate threat is mitigated. However, users should remain vigilant against similar domains that may appear in the future. PhishDestroy recommends that users verify any communications claiming to be from Apple by directly visiting the official Apple website rather than clicking on links in emails or messages. Organizations should ensure that email filters and web security tools block domains associated with this threat. Monitoring for related domains with similar registration patterns or IP addresses is advised to prevent future attacks.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога