ad-account-inspection-hub-6sg[.]pages[.]dev
“Facebook – log in or sign up”
ad-account-inspection-hub-6sg.pages.dev — 可达 · 访问受限 (HTTP 403). 品牌冒充:Facebook; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 16/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, DNS8); Google Safe Browsing flagged; PhishDestroy score 100/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of ad-account-inspection-hub-6sg.pages.dev as of July 24, 2026 shows a high-risk brand-impersonation campaign targeting Facebook users. The domain was created on 2026-03-03 and registered through Cloudflare, Inc., using Cloudflare’s default nameservers bruce.ns.cloudflare.com and tara.ns.cloudflare.com. DNS resolution points to IP 157.240.8.35, an address owned by AS13335 Cloudflare, Inc., located in the United States. The site responded with HTTP 403, and the TLS certificate was issued by Google Trust Services under the WE1 root, providing a legitimate‑looking HTTPS façade.
Google Safe Browsing classifies the URL as social engineering, and PhishDestroy has listed it on its blocklist. VirusTotal recorded detections from 16 of 93 scanned security vendors, confirming malicious intent. Independent reputation services assign extremely low trust scores (Scamadviser 1/100, Gridinsoft 0/100), and the domain appears on a single security blocklist. The page title "Facebook – log in or sign up" aligns with the declared impersonation of the Facebook brand.
Detected technologies include HSTS, Cloudflare edge services, and HTTP/3, which are typical for fast‑served malicious pages. The domain is currently offline, limiting immediate observation, and no public samples of the page content are available beyond the title. Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any re‑hosting on alternative Cloudflare‑protected subdomains, and update URL‑filtering and endpoint protection signatures to reflect the 16 vendor detections. Ongoing vigilance is advised because the underlying infrastructure—Cloudflare‑provided IP space and generic SSL—can be rapidly reused for new impersonation sites.
威胁响应 Pipeline
公共封禁名单状态
取证情报
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of ad-account-inspection-hub-6sg.pages.dev · checked Apr 11, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。