MALICIOUS — CRITICAL
lcloud.com-appleid.com Fake Apple Alert
lcloud[.]
Analysis of the domain lcloud.com-appleid.com shows it is actively used for brand impersonation targeting Apple users.
- VirusTotal
- 4/92
- Blocklists
- No stored match
- 可用性
- 最后已知的活跃状态 · HTTP 302
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
lcloud.com-appleid.com — 最后已知的活跃状态 (HTTP 302). 品牌冒充:Apple; 诈骗类型:Impersonation. 证据摘要: VirusTotal 4/92 (ADMINUSLabs, Cluster25, Gridinsoft, SOCRadar); PhishDestroy score 72/100. 注册商: Squarespace Domains.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Evidence Analysis
Analysis of the domain lcloud.com-appleid.com shows it is actively used for brand impersonation targeting Apple users. The domain was registered on May 16, 2026 through Squarespace Domains LLC and resolves to the Cloudflare‑hosted address 104.21.77.235, which is geolocated to Canada. The hosting service presents a Google Trust Services / WE1 SSL certificate, indicating a valid TLS handshake but offering no assurance of legitimacy. HTTP requests return a 302 redirect, a common tactic to forward victims to a malicious landing page without exposing the initial URL.
The domain appears on a single security blocklist and is specifically listed as blocked by PhishDestroy, confirming that at least one reputable anti‑phishing service has identified it as malicious. VirusTotal scans show four of ninety‑two security vendors flag the domain, providing additional independent confirmation of suspicious activity. The infrastructure uses Cloudflare's nameservers eleanor.ns.cloudflare.com and lennox.ns.cloudflare.com, a typical configuration for fast‑flux or anonymized hosting.
While the available evidence establishes the domain’s association with Apple brand impersonation, details such as the exact page content, credential‑harvesting mechanisms, or phishing kit employed remain unknown because no page title or visual analysis has been disclosed. Defenders should add lcloud.com-appleid.com to deny‑list rules across perimeter firewalls, web proxies, and email gateways, enforce strict URL filtering for any sub‑domains of appleid.com, and monitor DNS logs for queries to this domain. Continuous re‑scanning with multi‑vendor services is advised to detect any changes in detection scores, and security teams should alert end‑users to disregard unexpected Apple‑related communications that reference this domain.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
数据覆盖范围12 recorded checks
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
Registration: com-appleid.com
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For the registrable domain com-appleid.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
网站配置分析
证据与外部报告Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。