bluckffillogii[.]godaddysites[.]com
“BlóckFi Login”
bluckffillogii.godaddysites.com — Belum terverifikasi. Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 18/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, ESET, Emsisoft); PhishDestroy score 95/100. Registrar: GoDaddy.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain bluckffillogii.godaddysites.com has been identified as a generic_phishing threat, specifically impersonating the cryptocurrency platform BlockFi. The page title, 'BlóckFi Login,' mimics the legitimate BlockFi login interface, indicating an intent to deceive users into submitting credentials. As of the latest assessment, the domain is offline, though prior activity suggests it was actively used for malicious purposes. Analysis of the domain reveals it was flagged by 17 of 95 security vendors on VirusTotal, a notable detection rate for phishing infrastructure. The domain was registered through GoDaddy.com, LLC on November 18, 2013, an unusually long registration period that may have been leveraged to lend false legitimacy. It resolves to the IP address 76.223.105.230 and appears on two security blocklists, including PhishDestroy and OISD. The SSL certificate is issued by GoDaddy.com, Inc., a common certificate authority that does not inherently validate the domain's legitimacy. Infrastructure analysis indicates the domain was hosted on a platform known for enabling rapid deployment of phishing pages, further corroborating its malicious intent. The domain is currently offline, reducing immediate risk to users. However, the infrastructure supporting such threats often remains reusable, and similar domains may emerge. Organizations and individuals are advised to block the domain and its associated IP (76.223.105.230) at the network level. Users who may have interacted with the domain should reset credentials for any financial or cryptocurrency platforms, particularly BlockFi, and enable multi-factor authentication where available. Security teams should monitor for indicators of compromise, including unexpected login attempts or unauthorized transactions, and review logs for connections to the domain or IP address.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Registration: godaddysites.com
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain godaddysites.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive