violation-management-a6bc6[.]web[.]app
“Log into Facebook | Facebook”
violation-management-a6bc6.web.app — 内容不可用. 品牌冒充:Facebook; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 3 alerts; PhishDestroy score 100/100. 注册商: Google Domains.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies violation-management-a6bc6.web.app as a brand impersonation threat targeting Facebook users. This fraudulent page mimics the authentic Facebook login interface to harvest credentials, posing an elevated risk to visitors who may unknowingly surrender their login details. The domain leverages social engineering tactics by adopting a legitimate-sounding name and mimicking Facebook’s branding to deceive users into entering sensitive information. No drainer kit components were observed in the initial analysis, but the page’s primary function clearly indicates credential theft as its core malicious purpose. This domain resolves to IP address 199.36.158.100 and was registered through Google LLC. It currently holds a VirusTotal detection score of 11/95 security vendors and has been flagged and blocked by the OISD blocklist. The domain features a Google Trust Services SSL certificate, which may lend it an appearance of legitimacy. It has appeared on 1 known security blocklist and uses a subdomain structure typical of Firebase-hosted phishing pages (web.app). The domain’s creation date and full WHOIS history remain under review, but its technical footprint aligns with common phishing infrastructure. As of the latest assessment, violation-management-a6bc6.web.app remains active and accessible, with ongoing attempts to deceive users. Immediate response actions include broad blocklisting by security vendors and domain takedown efforts coordinated through Google Firebase support. Despite these efforts, the domain persists with elevated risk due to its active status and the potential for continued user exposure. Users are strongly advised to avoid this domain entirely, verify URLs before login, and report suspicious pages to Facebook and relevant security teams. Remaining risk is elevated due to active impersonation and moderate detection coverage.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | violation-management-a6bc6.web.app |
malicious | Sinkholed |
| OpenDNS | violation-management-a6bc6.web.app |
phishing | Phishing Block |
| DNS4EU | violation-management-a6bc6.web.app |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。