facebook-clone-rho-six[.]vercel[.]app
“Facebook”
facebook-clone-rho-six.vercel.app — 内容不可用 (HTTP 451). 品牌冒充:Facebook; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 19/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies an active phishing campaign targeting Facebook users through the domain facebook-clone-rho-six.vercel.app. This domain is a fraudulent clone designed to mimic Facebook’s login interface, tricking users into entering their credentials into a malicious form. The threat is classified as brand impersonation with a high risk level, indicating active exploitation by threat actors to harvest login details for account takeovers, financial fraud, or further social engineering attacks. Users interacting with this domain risk exposing their Facebook credentials, which could lead to unauthorized access, data theft, or propagation of malware to connected accounts. This domain was flagged by 24 out of 95 security vendors on VirusTotal, demonstrating widespread detection of its malicious nature. It is registered through Vercel Inc., a legitimate hosting provider, which has been exploited to host this phishing content. The domain resolves to IP address 216.198.79.3 and is secured with a Google Trust Services SSL certificate, adding a false sense of legitimacy. Additionally, it appears on 1 security blocklist and is flagged by Google Safe Browsing under the category SOCIAL_ENGINEERING, confirming its malicious intent. These technical indicators highlight the domain’s role in a coordinated phishing operation aimed at deceiving users. If you have visited facebook-clone-rho-six.vercel.app, immediately change your Facebook password and enable two-factor authentication. Scan your device for malware using reputable antivirus software, as threat actors may have deployed additional payloads. Avoid entering any credentials on this domain and report the site to PhishDestroy for further investigation. Always verify URLs and use official Facebook domains (facebook.com or its regional equivalents) for secure logins. Stay vigilant for unsolicited messages or links, even if they appear to originate from trusted contacts.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | facebook-clone-rho-six.vercel.app |
phishing | Phishing Block |
| DNS4EU | facebook-clone-rho-six.vercel.app |
malicious | Sinkholed |
| Cloudflare DNS | facebook-clone-rho-six.vercel.app |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
Cloud platform for frontend deployment, optimized for Next.js.
JavaScript library for building user interfaces with component-based architecture.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of facebook-clone-rho-six.vercel.app · checked Apr 15, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。