violation-management-a6bc6[.]web[.]app
“Log into Facebook | Facebook”
violation-management-a6bc6.web.app — Conteúdo indisponível. Representação da marca: Facebook; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 3 alerts; PhishDestroy score 100/100. Registrador: Google Domains.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies violation-management-a6bc6.web.app as a brand impersonation threat targeting Facebook users. This fraudulent page mimics the authentic Facebook login interface to harvest credentials, posing an elevated risk to visitors who may unknowingly surrender their login details. The domain leverages social engineering tactics by adopting a legitimate-sounding name and mimicking Facebook’s branding to deceive users into entering sensitive information. No drainer kit components were observed in the initial analysis, but the page’s primary function clearly indicates credential theft as its core malicious purpose. This domain resolves to IP address 199.36.158.100 and was registered through Google LLC. It currently holds a VirusTotal detection score of 11/95 security vendors and has been flagged and blocked by the OISD blocklist. The domain features a Google Trust Services SSL certificate, which may lend it an appearance of legitimacy. It has appeared on 1 known security blocklist and uses a subdomain structure typical of Firebase-hosted phishing pages (web.app). The domain’s creation date and full WHOIS history remain under review, but its technical footprint aligns with common phishing infrastructure. As of the latest assessment, violation-management-a6bc6.web.app remains active and accessible, with ongoing attempts to deceive users. Immediate response actions include broad blocklisting by security vendors and domain takedown efforts coordinated through Google Firebase support. Despite these efforts, the domain persists with elevated risk due to its active status and the potential for continued user exposure. Users are strongly advised to avoid this domain entirely, verify URLs before login, and report suspicious pages to Facebook and relevant security teams. Remaining risk is elevated due to active impersonation and moderate detection coverage.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | violation-management-a6bc6.web.app |
malicious | Sinkholed |
| OpenDNS | violation-management-a6bc6.web.app |
phishing | Phishing Block |
| DNS4EU | violation-management-a6bc6.web.app |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências arquivadas
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo