ykone-tiktok[.]shop
“YKONE TikTok Shop | Premium Creator Commerce”
ykone-tiktok.shop — Прикритий · доступний. Уособлення бренду: TikTok; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 19/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); cloaking observed; PhishDestroy score 100/100. Реєстратор: GoDaddy.com.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, ykone-tiktok.shop, is identified as a credential harvesting phishing site designed to impersonate legitimate social commerce platforms. Analysis indicates the page presents itself as 'YKONE TikTok Shop | Premium Creator Commerce,' specifically targeting users of creator-focused e-commerce services. The objective appears to be the collection of login credentials, payment details, or other sensitive personal information through fraudulent account access portals or checkout processes. Infrastructure analysis reveals multiple high-risk indicators associated with this domain. The domain was registered on May 20, 2026, through GoDaddy.com LLC, an uncommon registrar for legitimate commerce platforms. It resolves to the IP address 76.76.21.21, hosted by Vercel, Inc. in the United States, a provider frequently abused for transient phishing operations. Security detection systems have flagged this domain extensively: VirusTotal reports 18 out of 95 security vendors marking it as malicious, and it appears on one security blocklist. The SSL certificate, issued by Let's Encrypt, provides basic encryption but does not validate legitimacy. Users who have visited ykone-tiktok.shop or entered any credentials on the site should immediately take corrective actions. All passwords associated with the account should be changed, particularly for the targeted platform and any other services where the same credentials may have been reused. Financial institutions should be notified if payment details were submitted. Monitoring for unauthorized transactions or account activity is strongly recommended. The domain has since been taken offline, but users should remain vigilant for similar phishing attempts using comparable domain names or branding.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога