ssteal[.]com
Перевірка домену ssteal.com на фішинг і безпеку
“SSTEAL”
ssteal.com — Останній відомий активний (HTTP 307). Уособлення бренду: Facebook; Тип шахрайства: Social Media Phishing. Зведення доказів: VirusTotal 2/91 (CRDF, Gridinsoft); PhishDestroy score 66/100. Реєстратор: Squarespace Domains.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain ssteal.com is a confirmed phishing site engaged in brand impersonation targeting Facebook users. It presents itself as a legitimate Facebook login portal to deceive victims into entering credentials, constituting a social media phishing scam. No crypto drainer kit was identified. The site is currently taken offline, but prior activity poses an elevated risk to users who may have interacted with it.
Technical analysis shows ssteal.com was flagged by 1 of 95 VirusTotal security vendors, including SOCRadar, and appears on 1 security blocklist (PhishDestroy). Google Safe Browsing did not flag the domain. It was registered through Squarespace Domains LLC on April 04, 2025, and resolved to IP address 76.76.21.61, hosted on Amazon.com, Inc. infrastructure (AS16509) in the US. The SSL certificate was issued by Let's Encrypt (R12), and the observed page title was 'SSTEAL'. Technologies detected include Vercel and HSTS, with nameservers pointing to Google Domains (ns-cloud-e2.googledomains.com, ns-cloud-e3.googledomains.com, ns-cloud-e4.googledomains.com). Gridinsoft assigned a trust score of 0/100.
Users who entered credentials on ssteal.com should immediately change their Facebook password and enable two-factor authentication (2FA) to prevent account takeover. Monitor the account for unauthorized activity, such as posts or messages sent without consent. Report the phishing domain to Facebook via their official reporting channels and to the Anti-Phishing Working Group at reportphishing@apwg.org. If financial or personal data was exposed, consider placing a fraud alert with credit bureaus. Avoid interacting with the domain ssteal.com or any links associated with it.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ssteal.com · checked Mar 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога