jlonex-fursa-a7c109-wplm-vhrr[.]pages[.]dev
“Facebook – log in or sign up”
jlonex-fursa-a7c109-wplm-vhrr.pages.dev — Conteúdo indisponível. Representação da marca: Facebook. Resumo das evidências: VirusTotal 16/91 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); PhishDestroy score 95/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, jlonex-fursa-a7c109-wplm-vhrr.pages.dev, is actively engaged in credential phishing operations targeting users of Meta for Business services. The page title, Meta for Business | Page Appeal, suggests an attempt to deceive victims into believing they are interacting with a legitimate Meta platform, likely to harvest login credentials or other sensitive account information. Such phishing campaigns often employ social engineering tactics, including fake login portals, urgency-driven messaging, or fraudulent account verification prompts, to manipulate users into disclosing their credentials. Infrastructure analysis reveals that the domain is registered through Cloudflare, Inc., a provider frequently utilized by both legitimate services and malicious actors due to its privacy and proxy features. The domain resolves to the IP address 188.114.97.3, which is part of a network range associated with content delivery and cloud hosting services. As of the latest assessment, the domain has not been flagged by any of the 95 security vendors on VirusTotal, indicating a low detection rate and potential evasion of automated scanning systems. No blocklist entries or historical abuse reports were identified at the time of analysis, further suggesting the domain's recent deployment or successful obfuscation. Users who have visited this domain or interacted with its content are advised to take immediate remedial actions. First, any credentials entered on the site should be considered compromised and must be changed immediately across all platforms where the same or similar passwords were used. Multi-factor authentication (MFA) should be enabled on all critical accounts to mitigate the risk of unauthorized access. Additionally, affected users should monitor their accounts for suspicious activity, such as unauthorized logins or transactions. If financial or personally identifiable information was disclosed, appropriate fraud prevention measures, such as credit monitoring or identity theft protection, should be implemented. Organizations should also consider blocking the domain and its associated IP address at the network level to prevent further exposure.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo