llonex-fursa-a7c109-wplm[.]pages[.]dev
“Facebook - log in or sign up”
llonex-fursa-a7c109-wplm.pages.dev — Контент недоступний. Уособлення бренду: Facebook; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 13/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Forcepoint ThreatSeeker); CF Radar malicious; PhishDestroy score 94/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, llonex-fursa-a7c109-wplm.pages.dev, is identified as a high-risk phishing site targeting users of Facebook Business services. Analysis of the page title, 'Meta for Business | Page Appeal,' indicates an attempt to impersonate legitimate Meta (Facebook) business verification or appeal portals, a common tactic in credential harvesting campaigns. The site likely employs a phishing kit designed to mimic Meta’s branding, including logos, login forms, and business verification workflows, to deceive victims into submitting sensitive credentials or financial information. Infrastructure analysis reveals several critical technical indicators. The domain resolves to the IP address 172.66.44.108, hosted under Cloudflare’s infrastructure, and is registered through Cloudflare, Inc. The SSL certificate is issued by Google Trust Services, which, while legitimate, is frequently exploited by threat actors to lend credibility to malicious sites. As of the latest assessment, the domain is flagged by 6 out of 95 security vendors on VirusTotal, including detections for generic phishing and social engineering. It appears on two security blocklists, including PhishDestroy and OpenPhish, and remains unlisted in Google Safe Browsing. No creation date is publicly available, but the domain’s structure and naming convention suggest recent deployment, consistent with short-lived phishing campaigns. The domain remains active and poses a significant risk to users, particularly those managing business accounts on Facebook. Current response actions include its inclusion on multiple blocklists, but the site continues to resolve and may still be accessible to unsuspecting victims. Organizations and individuals are advised to block the domain and IP at the network level, and to implement additional verification steps for any unexpected Meta Business-related communications. Users who may have interacted with this domain should immediately reset their credentials and enable multi-factor authentication on all associated accounts. Given the high-risk classification and active status, continued monitoring for related infrastructure or similar domains is recommended.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of llonex-fursa-a7c109-wplm.pages.dev · checked Jul 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога