sap2861jjg[.]cc
“苹果”
sap2861jjg.cc — 未验证. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 17/91 (ADMINUSLabs, Criminal IP, AILabs (MONITORAPP), alphaMountain.ai, BitDefender); CF Radar malicious; PhishDestroy score 98/100. 注册商: GoDaddy.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis indicates that sap2861jjg.cc is an active high‑risk generic phishing site. The domain was registered on 20 August 2025 through GoDaddy.com, LLC and currently resolves to IP 38.182.168.153, which is assigned to AS40065 CNSERVERS LLC in the United States. The site returns HTTP 200 without an SSL certificate and is served from Cloudflare nameservers (ali.ns.cloudflare.com, piers.ns.cloudflare.com). The page title observed is “苹果”, the Chinese term for Apple, suggesting the site attempts to impersonate the Apple brand. Infrastructure signals are weak: the domain has a Gridinsoft trust score of 0 / 100 and is listed on two public phishing blocklists, including PhishDestroy and PhishingDB. VirusTotal reports 15 of 95 security vendors flagging the domain, and AlienVault OTX contains fifteen threat‑intelligence pulses referencing it. These indicators collectively confirm malicious intent, yet the exact phishing payload and victim‑targeting mechanisms remain unknown because the page content has not been fully analysed. Defenders should immediately block the domain and its resolved IP at perimeter firewalls and DNS filtering solutions, enforce TLS inspection to detect any future unencrypted traffic, and monitor for related C2 activity originating from the same IP range. Continuous threat‑intel correlation is advised to capture any new indicators that may emerge from subsequent analyses.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。