user-panel-apply-blue-badge[.]surge[.]sh
“Meta Verified — Free Badge”
user-panel-apply-blue-badge.surge.sh — Контент недоступен. Олицетворение бренда: Facebook. Сводка доказательств: VirusTotal 14/91 (alphaMountain.ai, BitDefender, Ermes, ESET, Emsisoft); URLScan malicious verdict; Spamhaus DBL_ABUSED_PHISH; CF Radar malicious; PhishDestroy score 93/100. Регистратор: Surge.sh.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, user-panel-apply-blue-badge.surge.sh, is actively flagged as a phishing site. VirusTotal reports that 14 of 91 scanned security vendors have identified the host as malicious, indicating a moderate consensus of detection across multiple engines. DNS resolution points to the IPv4 address 188.166.132.94; no alternative A or AAAA records are observed, and the authoritative nameserver information is unavailable (NS_NOT_FOUND), which may reflect a misconfigured or deliberately hidden name server setup. Registration details show the domain was provisioned through the Surge.sh hosting platform, a service commonly used for rapid static site deployment, but no further registrant metadata is disclosed.
The domain appears on two independent phishing blocklists, specifically PhishDestroy and OpenPhish, and has been added to at least two broader security blocklists. These listings corroborate the VirusTotal findings and reinforce the classification of the site as a phishing vector. No SSL/TLS certificate data, HTTP response codes, page title, or content analysis are currently available, limiting insight into the exact payload or credential‑harvesting mechanisms employed. Given the confirmed detections and blocklist presence, defenders should treat any traffic to this host as malicious.
Recommended actions include adding the domain and its resolved IP address to outbound web filtering rules, updating intrusion‑prevention signatures, and monitoring network logs for connections to 188.166.132.94. Because the hosting provider is a generic static‑site service, additional scrutiny of other Surge.sh subdomains may be warranted. Until further forensic analysis of the site’s content is performed, the safest posture is to block the domain entirely and alert end‑users to avoid any unsolicited requests that reference the “user‑panel‑apply‑blue‑badge” naming pattern.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Перекрёстная проверка данных об угрозах · source references
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of user-panel-apply-blue-badge.surge.sh · checked Jul 22, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание