conduct[.]credits-center[.]com
“Meta Business Support”
conduct.credits-center.com — Контент недоступен. Олицетворение бренда: Facebook; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 16/95 (Criminal IP, BitDefender, CRDF, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 100/100. Регистратор: GRANSY S.R.O D/B/A SUB….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of conduct.credits-center.com shows an infrastructure built to masquerade as a Meta Business Support page, targeting Facebook users. The domain was registered on October 31, 2025 and is hosted on a DigitalOcean server (AS14061) located in the United States, resolving to IP 138.197.235.123. It is served without an SSL certificate, indicating an unencrypted HTTP service that was taken offline at the time of reporting. The registrar information lists GRANSY S.R.O D/B/A SUBREG.CZ as the registrant, and the domain relies on a set of five nameservers (ns.gransy.com through ns5.gransy.com).
Reputation scoring from independent services is extremely low: Gridinsoft assigns a trust score of 0 / 100 and Scamadviser rates the domain at 1 / 100. VirusTotal scans have flagged the domain, with 16 of 95 security vendors reporting malicious detection. The site appears on at least one public phishing blocklist and is actively blocked by the PhishDestroy service. The page title returned from the HTTP response is "Meta Business Support," confirming the intent to impersonate Facebook‑related services.
While the exact content of the landing page has not been captured, the combination of low trust scores, multiple vendor detections, and the explicit brand impersonation demonstrates a high‑confidence malicious profile. Defenders should add the domain and its resolving IP to outbound and inbound filtering rules, monitor DNS queries for the domain and its nameservers, and ensure that any user‑facing services enforce HTTPS with valid certificates. Threat‑intel feeds should be updated to include the domain, its registrar, and hosting details to improve early warning capabilities for organizations protecting Facebook‑related assets.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: credits-center.com
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain credits-center.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание