tap3877rp0[.]cc
“苹果”
tap3877rp0.cc — 未验证. 诈骗类型:Impersonation. 证据摘要: VirusTotal 16/91 (ADMINUSLabs, AILabs (MONITORAPP), alphaMountain.ai, BitDefender, Cluster25); CF Radar malicious; PhishDestroy score 98/100. 注册商: GoDaddy.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain tap3877rp0.cc has been identified as a phishing site specifically targeting users through Apple brand impersonation. Analysis of the page title, which displays the text '苹果' (Chinese for 'Apple'), confirms the intent to deceive users into believing the site is affiliated with the legitimate Apple brand. The domain is currently offline, though prior activity indicates it was actively used for credential harvesting or fraudulent transactions. Infrastructure analysis reveals the domain was registered on June 30, 2025, through GoDaddy.com, LLC, and resolved to the IP address 38.182.168.147, hosted under AS40065 (CNSERVERS LLC) in the United States. The domain lacks an SSL certificate, a common red flag for phishing sites. Security vendors have flagged this domain, with 15 out of 95 VirusTotal engines detecting it as malicious. Additionally, it appears on two security blocklists and has been explicitly blocked by PhishDestroy and PhishingDB, further corroborating its malicious nature. Given the domain's current offline status, no active threat is present. However, organizations and individuals should remain vigilant, as similar infrastructure may reappear under different domains. It is recommended to block the domain and its associated IP (38.182.168.147) at the network level, monitor for related domains registered through the same registrar, and educate users on recognizing brand impersonation tactics. Security teams should also review logs for any prior connections to this domain or IP to assess potential compromise.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。