theoldfacebook[.]ddns[.]net
“theoldfacebook.ddns.net”
Riepilogo delle prove
This domain was observed by multiple threat‑intelligence feeds as a brand‑impersonation site targeting Facebook users. The fully qualified name theoldfacebook.ddns.net resolves to 87.90.149.239, an address hosted by Bouygues Telecom in France. Registration records show the name was created on 21 February 2026 through DynDNS, a dynamic‑DNS provider commonly abused for fast‑flux and disposable hosting. The site returned HTTP 200 at the time of capture and the page title reported by the crawler was theoldfacebook.ddns.net, offering no legitimate branding cues.
Google Safe Browsing classified the URL under “social engineering”, and the same classification appears on a blocklist managed by PhishDestroy, where the domain is listed as a confirmed phishing entry. VirusTotal analysis indicates that 13 of 93 security vendors submitted a detection for the domain, reinforcing the malicious assessment. Gridinsoft assigned a trust score of 0 / 100, the lowest possible rating. The intelligence tags the activity as “Social Media Phishing”, specifically impersonating Facebook.
The domain is currently reported as taken offline, so live content cannot be examined, and no SSL/TLS details are available. Defenders should continue to block the host and the domain at perimeter and endpoint controls, add the IP address to threat‑intel feeds, and monitor for additional dynamic‑DNS names that resolve to the same ISP or subnet. Ongoing observation of DynDNS registrations related to Facebook‑themed strings is advised, as the infrastructure pattern suggests rapid domain turnover.
Data Coverage
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | theoldfacebook.ddns.net |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 12/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
-
VirusTotal
13 → 14
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo