tt-facebook[.]blogspot[.]com
فحص التصيد والأمان للنطاق tt-facebook.blogspot.com
“facebook”
tt-facebook.blogspot.com — آخر نشاط معروف (HTTP 200). انتحال العلامة التجارية: Facebook; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 16/91 (Criminal IP, alphaMountain.ai, BitDefender, ESET, Emsisoft); CF Radar malicious; PhishDestroy score 100/100. مسجّل النطاق: Google Blogger.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
The domain tt-facebook.blogspot.com is currently active and engaged in credential theft through brand impersonation, specifically targeting Facebook users. Analysis indicates this infrastructure is designed to harvest login credentials by mimicking the legitimate Facebook platform, as evidenced by the page title 'facebook' and the domain structure. The site remains operational and poses a significant risk to users who may unknowingly submit sensitive account information. Infrastructure analysis reveals that tt-facebook.blogspot.com is hosted on Google Blogger, a common platform exploited for phishing due to its accessibility and trust associations. The domain resolves to the IP address 142.250.154.132, which is not inherently malicious but serves as a conduit for the phishing content. According to VirusTotal, 12 of 95 security vendors have flagged this domain as malicious, a notable detection rate that underscores its threat level. No additional historical data, such as registration date or blocklist counts beyond VirusTotal, is currently available for this subdomain, as it is dynamically generated under the Blogger service. The current status of tt-facebook.blogspot.com is active, and users are advised to exercise extreme caution. Any interaction with this domain, particularly entering login credentials, should be avoided. Organizations and individuals are recommended to block access to this domain at the network level and report it to relevant security teams for further mitigation. Users who may have already interacted with the site should immediately change their Facebook passwords, enable multi-factor authentication, and monitor their accounts for unauthorized activity. Security teams should treat this domain as part of a broader credential theft campaign and investigate potential lateral movement or follow-on attacks originating from compromised accounts.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 6 identified
Blogger is a blog-publishing service that allows multi-user blogs with time-stamped entries.
www.blogger.com ثقة 100٪Java is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.
java.com ثقة 100٪OpenGSE is a test suite used for testing servlet compliance. It is deployed by using WAR files that are deployed on the server engine.
code.google.com ثقة 100٪Google AdSense is a program run by Google through which website publishers serve advertisements that are targeted to the site content and audience.
www.google.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب