# bob.beefyhubs.click — SUSPICIOUS > Stay safe online—bob.beefyhubs.click is a phishing threat flagged on multiple blocklists. Avoid this domain to protect your personal data. ## Summary PhishDestroy identifies bob.beefyhubs.click as a medium-risk generic phishing domain. The malicious site was designed to deceive users by displaying a page titled "Google," likely attempting to mimic the legitimate service to steal credentials or sensitive information. Technical indicators reveal that the domain was registered through Dynadot, LLC on October 22, 2025. It resolves to IP address 172.253.62.105 and appears on three separate security blocklists. VirusTotal analysis shows that 4 out of 95 security vendors flagged this domain as suspicious, underscoring its potential threat. The domain’s use of a convincing page title further highlights the fraudulent intent behind its creation. Currently, bob.beefyhubs.click has been taken offline, reducing immediate risk to users. PhishDestroy recommends continued monitoring of any related infrastructure and advises users to avoid interacting with this domain or any associated links. Entities should maintain vigilance for similar phishing attempts using deceptive branding tactics. ## Threat Details - Verdict: SUSPICIOUS - Site status: dead (HTTP 403) - Page title: Google ## Domain Intelligence - Registered: 2025-10-22 12:03:59 - Expires: 2026-10-22 12:03:59 - Registrar: Dynadot LLC - Country: US - IP: 172.253.62.105 - IP Org: Cloudflare CDN - Nameservers: brenna.ns.cloudflare.com hassan.ns.cloudflare.com - SSL Issuer: none ## Detection Status - VirusTotal: 4 vendors flagged Vendors: ["ChainPatrol", "alphaMountain.ai", "SOCRadar", "Trustwave"] - Google Safe Browsing: clean - Blocklists: 3 hits Lists: ["PhishDestroy", "MetaMask", "SEAL"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019a5e92-b19d-7558-a394-c2c775948c13.png - Cloudflare Radar: https://radar.cloudflare.com/scan/769c605b-2ffa-46a8-96d7-05d68b7ff012 - PhishDestroy: https://phishdestroy.io/domain/bob.beefyhubs.click/ - LLM endpoint: https://phishdestroy.io/domain/bob.beefyhubs.click/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/bob.beefyhubs.click/ Last updated: 2026-03-19