facebook-login-web[.]blogspot[.]com
“beyonce”
证据摘要
Analysis of facebook-login-web.blogspot.com as of July 20, 2026 indicates that the domain is actively being used for credential phishing. The domain is registered through Google LLC, a legitimate registrar, but the nameserver information is unavailable (NS_NOT_FOUND), which limits visibility into the authoritative DNS configuration. DNS resolution points to the IP address 142.251.20.132, an address owned by Google’s infrastructure, suggesting the attacker is leveraging a reputable hosting environment to increase perceived legitimacy. VirusTotal reports that 7 of 95 security vendors have flagged the domain, providing modest but notable detection across independent scanners. The domain is listed on a single security blocklist and is explicitly blocked by the PhishDestroy service, confirming that at least one anti‑phishing consortium has identified it as malicious. The threat classification is credential phishing with a high risk rating, and the campaign remains active. While the available data confirms malicious intent, several aspects remain uncertain: the exact content served at the URL has not been captured, the presence or absence of SSL/TLS certificates is not disclosed, and no additional contextual indicators such as page titles or external reputation scores are available. Defenders should continue to block the domain at network perimeters, update URL filtering rules, and monitor for any related subdomains that may resolve to the same IP. Incident response teams encountering credential submissions tied to this domain should treat them as compromised and advise affected users to reset passwords immediately. Ongoing surveillance of the IP address and associated Google‑hosted services is recommended to detect any further abuse patterns.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
技术
识别出 6 项高置信度技术
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of facebook-login-web.blogspot.com · checked Jul 20, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控