Security Scan Report: applerecuperaid.lat

Redirected to: https://applerecuperaid.lat/expire/index2.html

Submitted: Dec 20, 2025, 6:26:47 AMCompleted: Dec 20, 2025, 6:27:49 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 2 countries across 3 domains to perform 9 HTTP transactions. The main domain is applerecuperaid.lat and was registered NaN years ago.

Submitted URL: http://applerecuperaid.lat/

Effective URL: https://applerecuperaid.lat/expire/index2.htmlRedirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam: brand‑new domain impersonating iCloud.

Risk Factors
Brand impersonation of iCloud on a non‑official domain
Critical domain age (3 days) with no reputation
Unranked domain in Cisco Umbrella
Use of a generic TLD (.lat) for a high‑profile brand
Domain age information unavailable

Details

Page Title

iCloud

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

unknown

(0%)

Domain Information

The domain 'applerecuperaid.lat' uses the .lat top-level domain. The second-level label 'applerecuperaid' is 15 characters long with seven vowels and eight consonants. Tokenizing the label suggests five words: apple, re, cup, e, raid. Average segment length settles at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://applerecuperaid.lat/

Page Load Overview

0.95s
Total Load Time
9
HTTP Requests
3
Domains
97 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:25 chars
Detector Agreement:50%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
345.139.122.162Netherlands
AS206264Amarutu Technology Ltd
3142.250.185.138United States
AS15169GOOGLE
3172.217.18.3United States
AS15169GOOGLE
93--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F631422B86606A0D2300C564F6C2F62C8AF67D1BAD4499D4F4EF02A65FD0FC6C4F7669

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:nw6PupNNZxGd1ZjvoLnzsaSYHWOuBT1vbz:nwsu7NZ0bvfxYDG1Dz

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:1813:BAgABBCgCAAAEBAAAQAAAAAAEAAAAAABCAAAQIAAgBAAEAAiAgAAAIQQAAMA0ACQAAgAQAAKAAgAAAAgQAEEACBkACIAAAAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000003c3c000000
Perceptual Hash:c93436cbc93436cb
Difference Hash:0000043070040000
Wavelet Hash:000000183c3c0000
Color Hash:#784f3a

Other Hashes

Crop Resistant:0000043070040000

Scan History

Scan history not available

Unable to load historical scan data