meta-program[.]invoice-ads-manager[.]com
meta-program.invoice-ads-manager.com 피싱 및 보안 점검
“Accounts Centre”
meta-program.invoice-ads-manager.com — 콘텐츠를 사용할 수 없음 (HTTP 502). 브랜드 사칭: Facebook. 증거 요약: VirusTotal 21/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 2 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100. 등록기관: Gransy, s.r.o.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Evidence Analysis
This domain, meta-program.invoice-ads-manager.com, is actively engaged in a phishing campaign impersonating Facebook’s Accounts Centre. Analysis indicates the site presents a fraudulent login interface designed to harvest user credentials, consistent with brand impersonation tactics targeting social media authentication portals. No direct evidence of a cryptocurrency drainer or malware deployment was observed, though credential theft remains the primary objective. The page title explicitly reads 'Accounts Centre,' reinforcing the Facebook branding deception. Technical indicators confirm elevated risk: the domain resolves to IP address 172.66.0.96, hosted on Cloudflare infrastructure in Canada, and was registered on April 28, 2026, through registrar Gransy, s.r.o. Detection metrics reveal 24 of 95 security vendors flag the domain on VirusTotal, while it appears on one security blocklist. The SSL certificate, issued by Google Trust Services (WE1), provides encrypted communication but does not mitigate the underlying phishing threat. Google Safe Browsing currently does not list the domain, though this may reflect detection latency rather than benign status. As of this assessment, the phishing page remains active, with no evidence of takedown or mitigation. The use of Cloudflare obscures origin server details, complicating attribution and remediation efforts. Users encountering this domain are advised to avoid interaction, verify URL authenticity via official channels, and report the incident to relevant abuse contacts. Organizations should update blocklists to include this domain and monitor for credential reuse attempts stemming from this campaign. The elevated risk classification persists due to active exploitation and low detection coverage relative to established threat intelligence thresholds.
데이터 적용 범위12 recorded checks
네트워크 보안 인텔리전스
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
Registration: invoice-ads-manager.com
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For the registrable domain invoice-ads-manager.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 분석
증거 및 외부 보고서Independent lookups and source reports
PD-20260504-E7C44A Recipient: abuse@regtons.com Victim safety and official reportingImmediate actions and verified reporting channels
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.