dazzling-pithivier-7c97c9as[.]netlify[.]app
“Facebook”
dazzling-pithivier-7c97c9as.netlify.app — 未验证. 品牌冒充:Facebook; 诈骗类型:Social Media Phishing. 证据摘要: VirusTotal 16/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. 注册商: Netlify.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, dazzling-pithivier-7c97c9as.netlify.app, is identified as an active brand impersonation threat targeting Facebook users. Analysis indicates the site is designed to harvest login credentials through a fraudulent interface mimicking the legitimate Facebook platform. The page title explicitly displays 'Facebook,' and the infrastructure is configured to deceive users into submitting sensitive authentication details to unauthorized third parties. No evidence of a cryptocurrency drainer kit or wallet interaction was observed, focusing the threat solely on credential theft. Infrastructure analysis reveals the domain is registered through Netlify and resolves to the IP address 98.84.224.111, hosted on Amazon.com, Inc. (AS14618) infrastructure in the United States. The domain appears on two security blocklists and is flagged by 19 out of 95 security vendors on VirusTotal. Google Safe Browsing categorizes this domain as a phishing threat, and it is actively blocked by at least two security tracking systems. The SSL certificate is issued by DigiCert Inc, specifically under the DigiCert Global G2 TLS RSA SHA256 2020 CA1 intermediate, which does not mitigate the malicious intent of the site. As of the latest assessment, the domain remains active and continues to pose a high risk to users. Immediate response actions include reporting the domain to hosting providers and security organizations for takedown, as well as updating blocklists to prevent further access. Users are advised to avoid interacting with the domain and to verify the authenticity of any login page before entering credentials. Organizations should monitor for compromised accounts linked to this phishing campaign and enforce multi-factor authentication to mitigate potential unauthorized access.
安全信号
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Platform for deploying and hosting modern web applications.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of dazzling-pithivier-7c97c9as.netlify.app · checked Mar 1, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。