sap24365mf[.]cc
“苹果”
sap24365mf.cc — 未验证. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 18/91 (ADMINUSLabs, AILabs (MONITORAPP), alphaMountain.ai, BitDefender, Chong Lua Dao); CF Radar malicious; PhishDestroy score 98/100. 注册商: GoDaddy.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain sap24365mf.cc is identified as a generic_phishing site impersonating Apple. As of the latest assessment, the domain is offline and no longer active. This domain poses an elevated risk to users who may inadvertently access it, believing it to be a legitimate Apple website.
Infrastructure analysis reveals that sap24365mf.cc resolves to the IP address 38.182.168.147, which is located in the United States and is part of the AS40065 CNSERVERS LLC network. The domain was created on July 26, 2025, and is registered through GoDaddy.com, LLC. Notably, the domain does not have an SSL certificate, which is a common indicator of a non-secure and potentially malicious site. VirusTotal reports that 15 out of 95 security vendors have flagged this domain as malicious. Additionally, sap24365mf.cc appears on 2 security blocklists, further confirming its malicious nature. These blocklists include PhishDestroy and PhishingDB, which are reputable sources for identifying phishing sites.
Given that the domain is currently offline, the immediate threat has been mitigated. However, it is recommended that all users who may have visited this site before it was taken down change their Apple account passwords immediately and monitor their accounts for any unusual activity. IT administrators should ensure that their network's DNS settings and security policies are updated to block this domain and its associated IP address to prevent any residual access. Continuous monitoring and education of users on recognizing phishing attempts are also crucial to maintaining network security.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。