sp0ct0-drexil-biz-parvon-lutqa[.]pages[.]dev
“Facebook – log in or sign up”
sp0ct0-drexil-biz-parvon-lutqa.pages.dev — Контент недоступний. Уособлення бренду: Facebook. Зведення доказів: VirusTotal 13/91 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); CF Radar malicious; PhishDestroy score 94/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is actively engaged in credential phishing targeting Meta Business account holders. Analysis of the page title, 'Meta for Business | Page Appeal,' indicates a fraudulent login portal designed to harvest authentication credentials by impersonating official Meta Business services. The site remains operational, presenting a high-risk threat to users who may mistake it for legitimate Meta infrastructure. Infrastructure analysis reveals the domain is hosted on Cloudflare infrastructure, resolving to the IP address 188.114.96.3. The SSL certificate is issued by Google Trust Services, a common tactic to lend false legitimacy to phishing sites. Detection data from security engines shows 9 out of 95 vendors have flagged this domain as malicious, reflecting widespread recognition of its fraudulent nature. The domain is registered through Cloudflare, Inc., and no legitimate creation date or historical context is available to support its authenticity. Users who have visited this domain or entered credentials should immediately revoke access to any associated Meta Business accounts. It is recommended to reset passwords using multi-factor authentication and review account activity for unauthorized access. Organizations should block the domain and its resolving IP at the network perimeter to prevent further exposure. Monitoring for unusual login attempts or data exfiltration patterns is advised, as compromised credentials may be used in subsequent attacks.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога