Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@ipv4superhub.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
socialcmsbuzz[.]com
Verificação de phishing e segurança de socialcmsbuzz.com
“imé±å |imTokenå®ç½é±å |imTokenå®è£ ä¸è½½å°åï¼imTokenå®ç½ä¸è½½å...”
socialcmsbuzz.com — Último ativo conhecido (HTTP 200). Representação da marca: Facebook; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 11/91 (alphaMountain.ai, CyRadar, ESET, Fortinet, Gridinsoft); URLQuery 4 alerts; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Registrador: Gname.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Evidence Analysis
PhishDestroy identifies socialcmsbuzz.com as a live Facebook login phishing portal designed to harvest user credentials. The site mimics Facebook’s authentication flow to trick visitors into entering their username and password, which are then harvested by attackers. Once stolen, these credentials can be used to hijack accounts, spread spam, or launch further phishing campaigns against the victim’s friends and contacts. The domain’s interface closely resembles Facebook’s real login page, increasing the likelihood that unsuspecting users will be deceived. This domain was flagged by 11 out of 95 VirusTotal security vendors and has been active since March 1, 2018. It was registered through Gname.com Pte. Ltd. and is currently hosted on IP address 178.236.38.1. The combination of its age, hosting location, and consistent detection rate indicates a persistent threat rather than a short-lived scam. Users searching for social media management tools or CMS plugins may be particularly vulnerable to clicking this link, as the domain name suggests a legitimate service. If you visited socialcmsbuzz.com or entered any login details, immediately change your Facebook password and enable two-factor authentication. Scan your device for malware and review your Facebook account’s recent activity for unauthorized logins. Avoid clicking links from unsolicited emails or ads claiming to offer free tools. Report any suspicious login attempts to Facebook and consider using a password manager to detect fake login pages.
Cobertura dos dados13 recorded checks
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | socialcmsbuzz.com |
phishing | Phishing Block |
| Hagezi Threat Feed | socialcmsbuzz.com |
malicious | Sinkholed |
| DNS4EU | socialcmsbuzz.com |
malicious | Sinkholed |
| DigiCert UltraDNS | socialcmsbuzz.com |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias · 5 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% de confiançaNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% de confiançajQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências e relatórios externosIndependent lookups and source reports
PD-20260430-5143AD Recipient: abuse@ipv4superhub.com Victim safety and official reportingImmediate actions and verified reporting channels
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.