apple896a32f242594befbf0a937ab758af60[.]6eqrvh[.]cn
“8dx4wy.cn | 521: Web server is down”
apple896a32f242594befbf0a937ab758af60.6eqrvh.cn — 隐形 · 可达. 品牌冒充:Apple; 诈骗类型:Impersonation. 证据摘要: VirusTotal 14/91 (ADMINUSLabs, BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet); Spamhaus DBL_SPAM; cloaking observed; PhishDestroy score 100/100. 注册商: 商中在线科技股份有限公司.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, apple896a32f242594befbf0a937ab758af60.6eqrvh.cn, poses a brand impersonation threat targeting Apple users. The site was designed to mimic legitimate Apple services, likely to harvest credentials, payment details, or distribute malware under the guise of official Apple branding. Such domains often employ convincing visuals and urgent messaging to deceive users into disclosing sensitive information or downloading malicious files. Given the domain's structure and known impersonation tactics, it represents an elevated risk to individuals unfamiliar with phishing indicators. Analysis indicates this domain was created on May 12, 2026, and is registered through 商中在线科技股份有限公司. It is flagged by 22 out of 95 security vendors on VirusTotal, suggesting broad recognition of its malicious intent. The domain resolves to the IP address 188.114.96.3, associated with CloudFlare, Inc., a common hosting provider for both legitimate and malicious sites. The SSL certificate, issued by Google Trust Services, does not validate the site's legitimacy, as certificates can be obtained for any domain. The domain appears on one security blocklist, further confirming its classification as a threat. If you visited apple896a32f242594befbf0a937ab758af60.6eqrvh.cn or interacted with its content, take immediate action to mitigate potential risks. First, disconnect the device from the network to prevent further data transmission. Run a full scan using updated antivirus or anti-malware software to detect and remove any threats. If you entered credentials, change passwords for all accounts accessed from the compromised device, prioritizing financial and email accounts. Enable multi-factor authentication where available. Monitor accounts for unauthorized activity and report any suspicious transactions to the relevant institutions. Consider resetting the device to factory settings if malware is detected or if the device exhibits unusual behavior.
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。