bloxtools[.]st
Resumo das evidências
Bloxtools.st has been identified as a generic phishing domain, primarily used for fake login attempts. The domain does not appear to be impersonating a specific brand or utilizing a particular drainer kit. The page title 'Just a moment...' suggests that the phishing infrastructure may have been designed to mimic a loading or verification screen to trick users into providing sensitive information.
Technical analysis reveals that Bloxtools.st has been flagged by 15 out of 95 security vendors on VirusTotal, indicating a moderate level of suspicion. The domain is registered through ST Registry and resolves to the IP address 172.67.139.89, which is located in the United States and part of the AS13335 Cloudflare, Inc. network. The domain was created on February 23, 2025, and currently appears on 2 security blocklists, including PhishDestroy and PhishingDB. The SSL certificate for the domain is issued by Let's Encrypt, which is a common choice for phishing operators due to its ease of use and cost-effectiveness.
The current status of Bloxtools.st is offline, suggesting that it has been taken down or is not actively being used at this time. Despite this, the elevated risk level indicates that the domain may still pose a threat to unsuspecting users who stumble upon it. Response actions should include updating security blocklists and warning users to avoid the domain. The remaining risk is significant, as the domain could be reactivated or repurposed by threat actors in the future. Users are advised to remain vigilant and report any suspicious activity related to this domain.
Data Coverage
Sinais de segurança
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
VirusTotal
15 → 14
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of bloxtools.st · checked Mar 2, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo