facebook-clone-theta-nine[.]vercel[.]app
“Facebook Clone”
facebook-clone-theta-nine.vercel.app — 内容不可用 (HTTP 451). 品牌冒充:Facebook; 诈骗类型:Social Media Phishing. 证据摘要: VirusTotal 18/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain facebook-clone-theta-nine.vercel.app is currently active and engaged in brand impersonation targeting Facebook users. Analysis indicates this infrastructure is designed for credential harvesting, presenting a cloned Facebook login interface to deceive victims into submitting account credentials. The domain remains operational as of the latest verification. Infrastructure analysis reveals the domain was registered through Vercel Inc. on March 09, 2026, and resolves to IP address 216.198.79.3 within Amazon.com, Inc.'s AS16509 network. Security vendor detection shows 22 of 95 engines on VirusTotal flag this domain as malicious, while Google Safe Browsing explicitly classifies it as phishing. The SSL certificate is issued by Google Trust Services (WR1), and the page title explicitly identifies itself as 'Facebook Clone.' The domain appears on one security blocklist and is actively blocked by enterprise security systems. Current status confirms the phishing infrastructure remains accessible and operational. Organizations should immediately implement DNS-level blocking for facebook-clone-theta-nine.vercel.app and its resolving IP 216.198.79.3. End users are advised to verify domain authenticity before entering credentials, particularly when encountering unexpected login prompts. Security teams should monitor for credential reuse attempts against compromised accounts and implement multi-factor authentication as a mitigation measure. The domain's Vercel hosting demonstrates threat actors' continued abuse of legitimate cloud platforms for malicious operations.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | facebook-clone-theta-nine.vercel.app |
malicious | Sinkholed |
| OpenDNS | facebook-clone-theta-nine.vercel.app |
phishing | Phishing Block |
| DNS4EU | facebook-clone-theta-nine.vercel.app |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of facebook-clone-theta-nine.vercel.app · checked Mar 9, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。