ml-facebook[.]blogspot[.]com
Verifica phishing e sicurezza per ml-facebook.blogspot.com
“FACEBOOK”
ml-facebook.blogspot.com — Ultimo attivo conosciuto (HTTP 200). Simulazione del marchio: Facebook; Tipo di truffa: Credential Phishing. Riepilogo delle prove: VT 17/91 (Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, ESET); URLScan no malicious verdict; GSB no flag; BL 1 (Phishunt); CF Radar malicious; PD 100/100. Registrar: Google Blogger.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
ml-facebook.blogspot.com is a tenant hostname on Google Blogger, not a separately registered domain. PhishDestroy first recorded this hostname on Jul 10, 2026. The hostname explicitly references Facebook; stored content metadata identifies the same apparent target. The stored content classification is credential phishing. The assembled evidence scores 100/100 (critical).
Three independent sources are positive: VirusTotal, Phishunt, and Cloudflare Radar. VirusTotal recorded 17 detections among 91 engines: Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, ESET, Emsisoft, Fortinet, G-Data, Gridinsoft, Kaspersky, LevelBlue, Lionic, Netcraft, OpenPhish, Sophos, VIPRE, Webroot on Jul 11, 2026 at 00:50 UTC. Phishunt listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 18:20 UTC. Cloudflare Radar classified the hostname as malicious and placed it in the phishing category; its verdict timestamp was not retained. The evidence is not unanimous. Google Safe Browsing returned no flag on Jul 10, 2026 at 12:40 UTC. URLScan completed without a malicious verdict (score 0) on Jul 10, 2026 at 12:37 UTC.
HTTP 200 was recorded on Aug 7, 2026 at 10:02 UTC. Google Blogger is the hosting platform for this tenant, not its registrar. At collection time, the hostname resolved to 142.251.127.132 on AS15169 (Google LLC). The associated network metadata labels the endpoint as AS15169 Google LLC in Frankfurt am Main, DE. This is shared platform infrastructure; the IP and ASN are hosting context, not attribution to unrelated tenants. The stored server header is GSE. Captured page title: “FACEBOOK”. DOM analysis completed on Jul 10, 2026 at 14:20 UTC; stored DOM score 93/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. IoC extraction completed on Jul 29, 2026 at 01:55 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. The platform TLS certificate was issued by Google Trust Services / WE2 with validity through Sep 14, 2026; checked Jul 10, 2026 at 13:00 UTC.
Taken together, the page content and independent findings support classifying this hostname as Facebook-themed credential phishing.
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 6 identified
Blogger is a blog-publishing service that allows multi-user blogs with time-stamped entries.
www.blogger.com Confidenza al 100%Java is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.
java.com Confidenza al 100%OpenGSE is a test suite used for testing servlet compliance. It is deployed by using WAR files that are deployed on the server engine.
code.google.com Confidenza al 100%Google AdSense is a program run by Google through which website publishers serve advertisements that are targeted to the site content and audience.
www.google.com Confidenza al 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confidenza al 100%Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo