http://bespoke-sundae-5b293b.netlify.app/HTTP 503
3.3 KB
1.2 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encoding“Roblox”
bespoke-sundae-5b293b.netlify.app — Nội dung không có sẵn. Mạo danh thương hiệu: Roblox; Loại lừa đảo: Impersonation. Tóm tắt bằng chứng: VirusTotal 16/91 (BitDefender, ESET, Emsisoft, Forcepoint ThreatSeeker, Fortinet); CF Radar malicious; PhishDestroy score 95/100. Nhà đăng ký: Netlify.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
On July 28, 2026, the domain bespoke-sundae-5b293b.netlify.app was observed hosting a brand‑impersonation campaign targeting Roblox. The site resolves to the IPv4 address 35.157.26.135, which is owned by Netlify’s hosting infrastructure. Registration details indicate the domain was provisioned through Netlify, and the DNS configuration reports a missing nameserver entry (NS_NOT_FOUND), suggesting the provider’s default name‑service is in use. The page title returned by the HTTP request is “Roblox”, directly matching the declared brand target.
Static analysis on VirusTotal shows that 16 of 91 security scanners flagged the domain as malicious, providing independent confirmation of suspicious activity. The domain is currently listed on two public phishing blocklists, specifically PhishDestroy and OpenPhish, both of which have classified it as a brand‑impersonation vector. These listings corroborate the high‑risk rating assigned to the domain.
The available intelligence does not include details such as SSL certificate properties, HTTP status codes, or additional content hashes, leaving the exact payload and user‑interaction mechanisms unverified. Consequently, defenders cannot confirm whether a credential‑collection form or other malicious component is present, only that the domain’s infrastructure and external reputation align with a typical Roblox impersonation operation.
Given the confirmed hosting on a reputable cloud platform, the presence on multiple blocklists, and the multi‑engine detection rate, security teams should proactively block traffic to bespoke-sundae-5b293b.netlify.app at the network perimeter and update endpoint detection signatures to include the observed IP address 35.157.26.135. Monitoring for new DNS resolutions or similar Netlify‑hosted subdomains that reference Roblox is also advised.
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com Độ tin cậy 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Độ tin cậy 100%Google PageSpeed Insights — mobile performance audit of bespoke-sundae-5b293b.netlify.app · checked Jul 28, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://bespoke-sundae-5b293b.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingNếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayHãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoCác báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiTheo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai