The domain facebook-authorization.blogspot.com is currently active and classified as a high‑risk generic phishing site. Infrastructure analysis shows the domain resolves to the IP address 142.251.14.132, which is hosted by Google LLC, the same registrar listed for the domain. Nameserver information could not be retrieved (NS_NOT_FOUND), limiting visibility into the DNS hierarchy. The domain is listed on one security blocklist and is explicitly blocked by the PhishDestroy feed, indicating that at least one reputable anti‑phishing service has identified it as malicious.
VirusTotal reports that 5 of 91 security vendors have flagged the domain, providing additional corroboration of its malicious nature. No public page title, SSL certificate details, or HTTP response codes are available in the supplied intelligence, leaving the exact content and delivery mechanisms unverified. Defenders should prioritize immediate containment by adding the domain to network‑level blocklists, DNS filtering rules, and endpoint protection policies.
Continuous monitoring of the associated IP address (142.251.14.132) is advised, as it may host additional malicious resources. Given the lack of detailed page analysis, further investigation—such as sandbox execution of any retrieved content—should be pursued to determine the specific credential‑harvesting techniques employed. Until more concrete evidence is gathered, the domain should be treated as a confirmed phishing threat and blocked across all enterprise security layers.