pay[.]tiktokmart[.]shop
“Online payment @ TikTok Mart”
pay.tiktokmart.shop — 未验证. 品牌冒充:TikTok; 诈骗类型:Social Media Phishing. 证据摘要: VirusTotal 10/91 (alphaMountain.ai, BitDefender, CRDF, Fortinet, G-Data); PhishDestroy score 80/100. 注册商: GoDaddy.com.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of pay.tiktokmart.shop indicates a high-risk brand impersonation campaign targeting TikTok users. The domain was registered on March 25, 2026, through GoDaddy.com LLC, a registrar frequently associated with both legitimate and malicious domains. Infrastructure analysis reveals the domain resolves to the IP address 100.49.110.141, which has not yet been widely documented in threat intelligence feeds but is flagged by two security blocklists: PhishDestroy and BLP-Malware. The SSL certificate, issued by GoDaddy.com, Inc., provides basic encryption but does not validate the legitimacy of the site’s operations or ownership. The page title, 'Online payment @ TikTok Mart,' explicitly suggests an attempt to mimic TikTok’s payment or e-commerce services, a common tactic in phishing campaigns designed to harvest financial credentials. Detection data from VirusTotal shows that 4 out of 95 security vendors have flagged the domain as malicious, a relatively low detection rate that may reflect the campaign’s recent activation or evasion techniques. The presence of Google Pay among detected technologies further supports the likelihood of a payment-focused phishing operation, as attackers often integrate recognizable payment gateways to lend false credibility to fraudulent checkout processes. Gridinsoft’s trust score of 0 out of 100 reinforces the domain’s high-risk classification, though the absence of broader detection does not rule out active malicious intent. The domain remains operational as of July 12, 2026, with no evidence of takedown or remediation efforts. Defenders should treat this domain as hostile and prioritize blocking or monitoring traffic to 100.49.110.141, particularly in environments where TikTok-related services are accessed. Organizations may also consider proactive measures such as sinkholing the domain or alerting users to the risks of interacting with unverified payment portals under the TikTok brand.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
Registration: tiktokmart.shop
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For the registrable domain tiktokmart.shop behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。