3lse[.]sap2303u19[.]cc
“苹果”
3lse.sap2303u19.cc — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 16/95 (ADMINUSLabs, Criminal IP, ArcSight Threat Intelligence, BitDefender, CyRadar); CF Radar malicious; PhishDestroy score 100/100. 注册商: GoDaddy.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain 3lse.sap2303u19.cc was found to be hosting a generic phishing page impersonating Apple, as indicated by the page title "苹果" (Apple in Chinese). This domain is now offline, but while active it posed a significant threat to users who may have entered credentials or personal information. The phishing campaign leveraged a deceptive login interface to steal Apple ID credentials, potentially leading to account compromise and financial loss.
Technical analysis reveals that the domain was created on July 26, 2025, and registered through GoDaddy.com, LLC. It resolved to IP address 38.182.168.147 and lacked an SSL certificate, a common red flag for phishing sites. VirusTotal flagged the domain as malicious by 16 out of 95 security vendors, and it appeared on two security blocklists. These indicators collectively confirm the domain's malicious intent and high risk to visitors.
Although the domain is currently offline, users who may have interacted with it should change their Apple ID passwords immediately and enable two-factor authentication. Monitor accounts for unauthorized access and report any suspicious activity to Apple Support. PhishDestroy recommends avoiding clicking on unsolicited links and always verifying URLs before entering sensitive information.
安全信号
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。