customer-support-system-complaint-case-desk[.]pages[.]dev
“Facebook – log in or sign up”
customer-support-system-complaint-case-desk.pages.dev — 内容不可用. 品牌冒充:Facebook; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 15/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, DNS8); Google Safe Browsing flagged; PhishDestroy score 100/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain customer-support-system-complaint-case-desk.pages.dev was registered on March 03, 2026 through Cloudflare, Inc. and is hosted on Cloudflare’s network (ASN 13335) with the public IP address 157.240.0.35 located in the United States. DNS resolution points to Cloudflare nameservers clay.ns.cloudflare.com and connie.ns.cloudflare.com, and the site enforced HSTS while supporting HTTP/3. An SSL certificate issued by Google Trust Services (WE1) was presented, but the HTTP response returned a 403 status code, indicating the site is currently inaccessible.
The page title observed during the brief scan was "Facebook – log in or sign up," matching the declared brand target of Facebook and confirming the scam type as brand impersonation. Security‑vendor coverage shows 15 of 93 VirusTotal scanners flagged the domain, and both Google Safe Browsing and PhishDestroy identified it as a social‑engineering threat, leading to its inclusion on at least one security blocklist. Reputation services assign an extremely low trust score—1 / 100 on Scamadviser and 0 / 100 on Gridinsoft—reinforcing the malicious classification.
While the infrastructure details are concrete, the exact phishing kit, credential‑harvesting method, and any active command‑and‑control components remain unknown because the site is offline and no payload was captured. Defenders should block the domain and its resolved IP at perimeter firewalls and DNS filtering solutions, monitor for any future re‑registration of the same sub‑domain pattern, and update endpoint detection rules with the observed TLS fingerprint and HTTP status. Continuous monitoring of Cloudflare‑hosted assets targeting the Facebook brand is advised, as the attacker leveraged reputable hosting to increase credibility.
威胁响应 Pipeline
公共封禁名单状态
取证情报
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of customer-support-system-complaint-case-desk.pages.dev · checked Apr 11, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。