t[.]proreview[.]ir
“Apple”
t.proreview.ir — 内容不可用 (HTTP 502). 品牌冒充:Apple; 诈骗类型:Tech Support Scam. 证据摘要: VirusTotal 14 detections (engine total unavailable) (CRDF, CyRadar, Ermes, ESET, Forcepoint ThreatSeeker); PhishDestroy score 92/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
On July 23, 2026, the domain t.proreview.ir was identified as a brand impersonation threat targeting Apple. This domain has been flagged as part of a tech support scam, indicating that it may have been used to deceive users into believing they are interacting with official Apple support services. The domain was created on February 21, 2026, and has since been taken offline, which could be a result of defensive actions or the scam operators ceasing operations. The nameservers for this domain are dell.ns.cloudflare.com and pranab.ns.cloudflare.com, suggesting it was hosted using Cloudflare services.
The domain resolves to the IP address 154.211.2.186, located in the Netherlands and associated with the autonomous system AS212552, operated by BitCommand LLC. Analysis indicates that the domain does not have an SSL certificate, which is a common indicator of a legitimate website. The page title for the domain is 'Apple', further reinforcing the impersonation attempt. The domain appears on one security blocklist and has a Gridinsoft trust score of 0 out of 100, indicating a high level of suspicion. PhishDestroy has also blocked this domain, adding another layer of validation to its malicious nature.
Given the elevated risk level and the specific targeting of Apple, defenders should remain vigilant and ensure that any remaining infrastructure related to this domain is thoroughly investigated and blocked. Users should be educated to recognize and report such scams, especially those impersonating well-known brands like Apple. While the domain is currently offline, it is advisable to monitor for any reactivation or similar domains that may be used in future campaigns.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。