# facebook-clone-rho-two.vercel.app — MALICIOUS > facebook-clone-rho-two.vercel.app is a high-risk phishing site active now. Stay alert and avoid sharing personal info. Learn more at PhishDestroy. ## Summary PhishDestroy identifies facebook-clone-rho-two.vercel.app as an active phishing domain designed to mimic Facebook's login experience. This type of threat is dangerous because it aims to steal sensitive user credentials by deceiving visitors into entering their information, potentially leading to identity theft and unauthorized account access. Users encountering this site should be cautious and aware of such deceptive tactics. The domain resolves to the IP address 64.29.17.195 and is hosted through the cloud platform Vercel Inc., which is often used for legitimate projects but can be abused by threat actors for quick deployment of phishing pages. VirusTotal analysis shows that 19 out of 95 security vendors currently flag this domain as malicious, confirming its phishing nature. The domain name itself attempts to create a false sense of legitimacy by including "facebook-clone," a tactic common in phishing campaigns to trick users into trusting the site. Users should avoid clicking links leading to facebook-clone-rho-two.vercel.app and never input any personal or login credentials on this site. If users suspect they have already interacted with this domain, they should immediately change their passwords on official platforms and monitor their accounts for suspicious activity. Reporting the site to web security services and browser phishing filters can help protect others from falling victim to this scam. ## Threat Details - Verdict: MALICIOUS - Site status: alive (HTTP 200) - Page title: Facebook ## Domain Intelligence - Registered: 2026-03-05 01:07:02 - Registrar: Vercel Inc. - IP: 64.29.17.195 - Nameservers: NS_NOT_FOUND ## Detection Status - VirusTotal: 22 vendors flagged Vendors: ["ADMINUSLabs", "BitDefender", "Criminal IP", "CyRadar", "ESET", "Emsisoft", "Ermes", "Forcepoint ThreatSeeker", "G-Data", "Gridinsoft", "Kaspersky", "Lionic", "MalwareURL", "Mimecast", "Netcraft", "OpenPhish", "Sophos", "Trustwave", "URLQuery", "VIPRE", "Webroot", "alphaMountain.ai"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Live Page Content ### Page Text Facebook Ahmed Ali Ahmed Ali Friends Jobs Groups Marketplace Watch Memories Saved Pages Ad Centre Ads Manager Blood Donations Climate Science Centre Community Help COVID-19 Information Centre Community Help Emotional Health Events Facebook Pay Make story Aisha Tarak Islam Ayman Abdulrahman Beatiful Flower live video images/videos filling/active Aisha 10 hrs ago it was a nice day Like comment share Aisha 10 hrs ago You only live once, but if you do it right, once is enough Like comment share Aisha 2 hrs ago Happy Birthday Like comment share Aisha 3 hrs ago my cute kids Like comment share nada 2 days ago “Be yourself everyone else is already taken.” Like comment share nada 2 days ago “Be yourself everyone else is already taken.” Like comment share nada 2 days ago “Be yourself everyone else is already taken.” Like comment share nada 2 days ago “Be yourself everyone else is already taken.” Like comment share Sponsored Find Hope Adobe photoshop lightroom Contacts lilly peter ali waad ahmed nader sara nada jana john ## Evidence - Screenshot: https://i.ibb.co/6RF0sBWq/58433a4f9e50.png - Cloudflare Radar: https://radar.cloudflare.com/scan/454d3848-a386-4bf8-a6dd-778319b3d525 - PhishDestroy: https://phishdestroy.io/domain/facebook-clone-rho-two.vercel.app/ ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/facebook-clone-rho-two.vercel.app/ Last updated: 2026-03-14