congrts-invite-blue-badge[.]surge[.]sh
“Meta Verified – Facebook”
congrts-invite-blue-badge.surge.sh — Nội dung không có sẵn. Mạo danh thương hiệu: Facebook; Loại lừa đảo: Impersonation. Tóm tắt bằng chứng: VirusTotal 20/91 (alphaMountain.ai, BitDefender, Certego, Chong Lua Dao, CyRadar); URLScan malicious verdict; Spamhaus DBL_ABUSED_PHISH; CF Radar malicious; PhishDestroy score 95/100. Nhà đăng ký: Surge.sh.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
The domain congrts-invite-blue-badge.surge.sh is currently active and has been identified as a generic phishing site. Registration records show that the domain is provisioned through the Surge.sh platform, a service that offers on‑demand static web hosting. The domain resolves to the IPv4 address 138.197.235.123, which is associated with the hosting infrastructure used by Surge.sh. No authoritative nameserver entries are returned, indicating that the service relies on the platform’s default DNS configuration. Detection telemetry indicates that the domain has been flagged by 11 of 91 security engines on VirusTotal, demonstrating a measurable level of malicious classification across multiple vendors.
The blocklist ecosystem reflects a single listing, and the domain is actively blocked by the PhishDestroy sinkhole, confirming that defensive operators have observed malicious activity originating from this host. No additional public blocklist entries are recorded at this time. The available intelligence does not include a page title, brand attribution, or detailed content analysis, leaving the exact phishing lure undefined. Consequently, the precise victim profile and the credential‑stealing mechanism remain uncertain. However, the combination of a high‑risk classification, active blocklist status, and multi‑engine detections suggests that the domain is being used to harvest user credentials or other sensitive data.
Defenders should prioritize immediate containment by adding congrts-invite-blue-badge.surge.sh to network‑level deny lists and updating endpoint protection signatures to include the observed VirusTotal detections. Continuous monitoring of DNS queries for the IP address 138.197.235.123 is advised, as any shift in hosting or additional subdomains may indicate campaign expansion. Where possible, threat‑intel feeds should be enriched with this indicator to improve cross‑organization detection.
Tình báo an ninh mạng
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Đối chiếu tình báo mối đe dọa · source references
Phân tích của VirusTotal
Bằng chứng lưu trữ
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of congrts-invite-blue-badge.surge.sh · checked Jul 26, 2026
Bằng chứng và các báo cáo bên ngoài
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai