theupdates[.]com[.]ng
“The Updates -”
The domain theupdates.com.ng is a credential-phishing site that impersonates Facebook, a case of brand impersonation. It was designed to harvest user login credentials by presenting a fraudulent Facebook login page. As of the latest verification, theupdates.com.ng has been taken offline, but it previously posed a direct risk to users who may have entered sensitive information.
Technical indicators show theupdates.com.ng was registered through Upperlink Limited on March 24, 2025, and resolved to the IP address 192.3.190.186, hosted on AS36352 (HostPapa) in the US. The domain appeared on 1 security blocklist (PhishDestroy) but had 0 of 95 VirusTotal vendor detections and was not flagged by Google Safe Browsing. No SSL certificate was present, and the observed page title was 'The Updates -'. Nameservers were dns1.webproserver.com and dns2.webproserver.com. Gridinsoft assigned a trust score of 0/100.
Users who may have entered credentials on theupdates.com.ng should immediately change their Facebook password and enable two-factor authentication. Monitor accounts for unauthorized activity and report any suspected fraud to Facebook. The domain itself can be reported to PhishDestroy or other anti-phishing organizations for further action.
威胁响应 Pipeline
阻止列表覆盖
10 个来源 · 于 2026年8月9日 同步
检测时间线
按时间顺序显示已存储的观测记录。
-
Cloudflare Radar
Cloudflare Radar:首次观测为 https://radar.cloudflare.com/scan/6f88b5a6-ef3e-4eed-a389-bdc58acc227b
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控