customer-support-system-contact-help-center[.]pages[.]dev
“Facebook - Connexion ou inscription”
customer-support-system-contact-help-center.pages.dev — 内容不可用. 品牌冒充:Facebook; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 15/93 (ADMINUSLabs, BitDefender, CyRadar, DNS8, ESET); Google Safe Browsing flagged; PhishDestroy score 100/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain customer-support-system-contact-help-center.pages.dev was registered on March 03, 2026 through Cloudflare, Inc. and is currently flagged as offline with an HTTP 403 response. It resolves to the Cloudflare IP address 157.240.0.35, which belongs to AS13335 in the United States. The TLS certificate presented is issued by Google Trust Services under the WE1 label, indicating a legitimate‑looking HTTPS endpoint. Passive fingerprinting shows the presence of HSTS, Cloudflare‑provided services, and HTTP/3 support.
The site is listed on one security blocklist and has been actively blocked by PhishDestroy. Google Safe Browsing classifies the URL as a social engineering threat, and VirusTotal reports 15 detections out of 93 scanned security vendors. Reputation services assign extremely low scores: Gridinsoft 0/100 and Scamadviser 1/100, reinforcing the malicious nature of the infrastructure. The page title returned by the server is "Facebook - Connexion ou inscription," directly aligning with the declared brand target of Facebook and confirming the brand‑impersonation scam type.
While the exact phishing kit or payload has not been observed, the combination of a brand‑specific page title, low trust scores, blocklist inclusion, and multiple vendor detections provides strong evidence of a high‑risk impersonation campaign. Defenders should continue to block the domain at perimeter filters, monitor DNS queries for the associated Cloudflare nameservers (bowen.ns.cloudflare.com, meiling.ns.cloudflare.com), and add the IP address 157.240.0.35 to threat‑intel feeds where feasible. Given the domain’s recent creation date and the use of a reputable SSL issuer, the threat may rely on user trust in the HTTPS lock icon; awareness training should emphasize verification of URL spelling and the danger of unsolicited login prompts. Ongoing surveillance is advised to detect any re‑hosting attempts or related subdomains that may emerge from the same Cloudflare account.
威胁响应 Pipeline
公共封禁名单状态
取证情报
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of customer-support-system-contact-help-center.pages.dev · checked Apr 11, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。