Analysis of the domain faceebook.blogspot.com, observed as active on 2026-07-29, indicates that it is being used for generic phishing. The domain is hosted on the Blogspot platform and was registered through Google LLC. DNS resolution points to the IP address 142.251.110.132, which belongs to Google's infrastructure. The domain appears on one security blocklist and has been flagged by PhishDestroy as blocked. VirusTotal scans show that 10 of 91 security vendors have marked the domain as malicious, providing independent confirmation of malicious intent.
No nameserver information could be retrieved, and the domain does not currently expose additional metadata such as SSL certificate details, HTTP status codes, or page title. These gaps limit full attribution but do not diminish the observed risk. The presence on a blocklist, the PhishDestroy block, and the multi‑vendor detections collectively raise the risk level to high. The lack of publicly visible nameserver records and the absence of detailed page content suggest that the threat actor may be leveraging the legitimate Blogspot hosting to obscure malicious activity.
Defenders should continue to block the domain at network perimeter and endpoint layers, monitor DNS queries for the IP 142.251.110.132, and consider adding the domain to internal blocklists. Additional investigation, such as retrieving the page title and examining TLS certificates, would improve confidence in classification. Until further evidence is gathered, the domain should be treated as a high‑confidence phishing indicator.