facebook-psm[.]blogspot[.]lu
“Facebook”
facebook-psm.blogspot.lu — असत्यापित. ब्रांड प्रतिरूपण: Facebook; घोटाले का प्रकार: Social Media Phishing. साक्ष्य सारांश: VirusTotal 16/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Cluster25); CF Radar malicious; PhishDestroy score 100/100. रजिस्ट्रार: GOOGLE (ASN: 15169).
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain facebook-psm.blogspot.lu has been identified as a threat type of brand impersonation, specifically targeting Facebook. This domain was designed to mimic Facebook's branding elements, as evidenced by its page title 'Facebook', to deceive users into believing it is an official Facebook site. The domain was hosted on Google's infrastructure, as indicated by its registration through GOOGLE (ASN: 15169) and its SSL certificate issued by Google Trust Services / WE2.
Upon further investigation, several technical indicators confirm the domain's malicious intent. VirusTotal analysis reports that 14 out of 95 security vendors have flagged this domain as malicious. The domain resolves to the IP address 142.250.185.225, located in the United States under AS15169, which is associated with Google LLC. The domain has been included in at least two security blocklists, specifically PhishDestroy and PhishingDB, highlighting the elevated risk it poses. Interestingly, the domain's registration through a reputable provider like Google suggests that attackers may be leveraging legitimate infrastructure to gain user trust.
As of the current status, the domain facebook-psm.blogspot.lu has been taken offline, reducing its immediate threat level. However, the presence of the domain on multiple blocklists and its substantial detection rate on VirusTotal indicate that similar domains could be created in the future. It is critical for users and organizations to remain vigilant, employing updated security measures and awareness training to mitigate the risks of phishing attacks. Regular monitoring of threat intelligence and blocklists, along with implementing multi-factor authentication, can provide additional layers of security to protect against such impersonation threats.
सुरक्षा संकेत
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 5 identified
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।