facebookloginxs.blogspot.com
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of facebookloginxs.blogspot.com
This domain appears to be a Blogspot-hosted page designed to resemble a Facebook login screen. The page title is "Facebook," and the screenshot shows a simple credential form requesting an email address and password, along with login and account-recovery style prompts. Based on the visible content, it does not appear to function as an independent blog or informational website despite being hosted on the Blogger platform.
The subdomain name "facebookloginxs" strongly suggests an attempt to reference Facebook branding while operating under a third-party blogging service rather than an official Facebook-owned domain. Blogspot pages are typically user-created and hosted within Google's Blogger infrastructure, so the underlying platform may be legitimate while the specific page content may still be deceptive.
Based on the domain naming and page presentation, this site appears to be aimed at collecting login credentials by imitating a well-known social media service rather than providing original content or a legitimate account portal.
Safety Assessment for facebookloginxs.blogspot.com
Multiple indicators suggest elevated risk at the time of this scan. The URL was flagged by 15 out of 91 security engines, with many classifying it as phishing or otherwise malicious. In addition, a malware scan marked the page as malicious and identified 2 flagged page entries. The screenshot also shows a login form styled as "Facebook" even though the page is hosted on a Blogspot subdomain, which is a strong sign that the site may be attempting to imitate a well-known service.
Blacklist and threat-database results also raise concern. The domain was listed for social-engineering activity by a major threat database, and the domain's IP address was listed on one mail-reputation blocklist. While an IP-based mail-reputation listing alone would be a weaker signal, it appears alongside broader phishing-related detections and a page design that closely resembles a branded login portal without using an official domain.
The domain itself references Facebook in a way that may mislead visitors into believing the page is affiliated with the real platform. Based on these findings and the visible credential-harvesting pattern, this website may pose potential risks to visitors.
Technical Description
The site is served over HTTPS with a valid TLS certificate issued through Google's infrastructure, and it is hosted on Google LLC using the GSE web server on a Blogspot/Blogger setup. The nameservers also point to Google's DNS infrastructure. This indicates the page is using a mainstream hosting platform rather than a standalone server.
However, valid HTTPS only confirms encrypted transport to the host and does not verify that the page itself is trustworthy. DNSSEC appears to be unsigned, and the more important concern here is not transport security but the apparent misuse of a hosted blogging subdomain to present a branded login form that may collect credentials.
Share your experience with this website. Was it safe? Did you encounter any issues?