facebook[.]red-hat[.]shop
“Facebook”
facebook.red-hat.shop — 内容不可用. 品牌冒充:Facebook; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 18/91 (alphaMountain.ai, BitDefender, Cluster25, ESET, Emsisoft); URLScan malicious verdict; PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain facebook.red-hat.shop is currently active and resolves to the IPv4 address 52.54.199.95. No TLS certificate is presented for the host, and the nameserver query returned NS_NOT_FOUND, indicating that authoritative name server information is not publicly resolvable. VirusTotal records show that 18 of 91 security vendors have flagged the domain, consistent with its classification as a generic phishing site. The limited infrastructure data suggests a simple hosting setup, but the absence of certificate and nameserver details hampers deeper attribution. Analysts have not yet captured page content or landing‑page characteristics, so the exact phishing campaign tactics remain unknown. Defensive teams should add both the domain and its resolving IP to block lists, enforce URL filtering for the exact hostname, and monitor DNS queries for any future resolution changes. Continuous scanning with malware‑analysis services is advised to capture any payloads that may later be associated with the host.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。