facebook-photo5[.]blogspot[.]com
“facebook”
facebook-photo5.blogspot.com — Неперевірений. Уособлення бренду: Facebook; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 17/91 (Criminal IP, alphaMountain.ai, BitDefender, ESET, Emsisoft); URLScan malicious verdict; 1 external blocklist match (Phishunt); PhishDestroy score 95/100. Реєстратор: Google Blogger.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, facebook-photo5.blogspot.com, is flagged as a high-risk brand impersonation threat targeting Facebook. Analysis indicates the infrastructure is designed to deceive users into believing they are interacting with legitimate Facebook services, likely to harvest login credentials or distribute malicious payloads. The page title explicitly displays 'facebook,' reinforcing the impersonation attempt, though no specific drainer kit signatures have been confirmed at this time. Infrastructure analysis reveals the domain resolves to the IP address 142.250.154.132, which is associated with legitimate services but repurposed for malicious activity. VirusTotal reports 6 out of 95 security vendors have detected this domain as malicious, indicating moderate but not universal recognition of the threat. The SSL certificate is issued by Google Trust Services, providing a false sense of security to potential victims. No registrar details or domain creation date are publicly available due to the use of a subdomain under blogspot.com, which obscures traditional WHOIS data. Google Safe Browsing (GSB) status and blocklist counts are not explicitly provided, but the domain's active exploitation suggests it may not yet be widely blocked. As of the latest verification, facebook-photo5.blogspot.com remains active and continues to host the impersonation content. Users encountering this domain are advised to avoid interaction, particularly entering credentials or downloading files. Organizations should consider implementing network-level blocks for the domain and its associated IP to mitigate exposure. The remaining risk is classified as high due to the domain's active status, the targeted brand's widespread user base, and the potential for credential theft or malware distribution. Continuous monitoring of related infrastructure is recommended to identify evolving threats linked to this campaign.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 12 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% впевненостіBlogger is a blog-publishing service that allows multi-user blogs with time-stamped entries.
www.blogger.com 100% впевненостіJava is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.
java.com 100% впевненостіYouTube is a video sharing service where users can create their own profile, upload videos, watch, like and comment on other videos.
www.youtube.com 100% впевненостіOpenGSE is a test suite used for testing servlet compliance. It is deployed by using WAR files that are deployed on the server engine.
code.google.com 100% впевненостіTwitter is a 'microblogging' system that allows you to send and receive short posts called tweets.
twitter.com 100% впевненостіAppNexus is a cloud-based software platform that enables and optimizes programmatic online advertising.
appnexus.com 100% впевненостіAdvertising / conversion-tracking pixel — signals paid marketing activity on this site.
www.advertstream.com 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of facebook-photo5.blogspot.com · checked Jul 10, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога