MALICIOUS — HIGH
ssteal[.]com
The domain ssteal.com is a confirmed phishing site engaged in brand impersonation targeting Facebook users.
- VirusTotal
- 2/91
- Blocklists
- No stored match
- Ketersediaan
- Terakhir diketahui aktif · HTTP 307
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
ssteal.com — Terakhir diketahui aktif (HTTP 307). Peniruan identitas merek: Facebook; Jenis penipuan: Social Media Phishing. Ringkasan bukti: VirusTotal 2/91 (CRDF, Gridinsoft); PhishDestroy score 66/100. Registrar: Squarespace Domains.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
The domain ssteal.com is a confirmed phishing site engaged in brand impersonation targeting Facebook users. It presents itself as a legitimate Facebook login portal to deceive victims into entering credentials, constituting a social media phishing scam. No crypto drainer kit was identified. The site is currently taken offline, but prior activity poses an elevated risk to users who may have interacted with it.
Technical analysis shows ssteal.com was flagged by 1 of 95 VirusTotal security vendors, including SOCRadar, and appears on 1 security blocklist (PhishDestroy). Google Safe Browsing did not flag the domain. It was registered through Squarespace Domains LLC on April 04, 2025, and resolved to IP address 76.76.21.61, hosted on Amazon.com, Inc. infrastructure (AS16509) in the US. The SSL certificate was issued by Let's Encrypt (R12), and the observed page title was 'SSTEAL'. Technologies detected include Vercel and HSTS, with nameservers pointing to Google Domains (ns-cloud-e2.googledomains.com, ns-cloud-e3.googledomains.com, ns-cloud-e4.googledomains.com). Gridinsoft assigned a trust score of 0/100.
Users who entered credentials on ssteal.com should immediately change their Facebook password and enable two-factor authentication (2FA) to prevent account takeover. Monitor the account for unauthorized activity, such as posts or messages sent without consent. Report the phishing domain to Facebook via their official reporting channels and to the Anti-Phishing Working Group at reportphishing@apwg.org. If financial or personal data was exposed, consider placing a fraud alert with credit bureaus. Avoid interacting with the domain ssteal.com or any links associated with it.
Cakupan data12 recorded checks
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Analisis VirusTotal
Bukti Terarsip
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of ssteal.com · checked Mar 2, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.