blessnetwork[.]xyz
“Bless Dashboard”
证据摘要
Analysis indicates that the domain blessnetwork.xyz was registered on 21 February 2026 and presently resolves to the IP address 104.21.80.1, which belongs to AS13335 operated by Cloudflare, Inc. The hosting location is the United States. The site presented the page title “Bless Dashboard” before being taken offline. The SSL certificate presented for the domain is identified as “WE1”, confirming that transport‑layer encryption was in place at the time of observation. VirusTotal recorded 2 detections out of 95 scanning engines, indicating that a minority of security vendors flagged the domain as malicious. In addition, the domain is listed on one public security blocklist and is actively blocked by the PhishDestroy service, reinforcing the classification of the site as a malicious resource.
Intelligence sources label the activity as a crypto‑related scam that impersonates the Coinbase brand, suggesting that the adversary intended to lure victims into a cryptocurrency‑focused deception. The current HTTP status is reported as offline, implying that the content has been removed or the hosting has been terminated. While the available evidence confirms the presence of brand impersonation and the use of a Cloudflare‑provided infrastructure, several aspects remain unverified. No detailed analysis of the page content, login forms, or underlying phishing kit has been published, and there is no publicly disclosed Safe Browsing or Open Threat Exchange (OTX) entry for the domain. The registrar information has not been disclosed, and the trust scores from commercial reputation services are not available in the current dataset.
Consequently, defenders must rely on the observable indicators—domain name, IP address, SSL certificate fingerprint, detection count, blocklist inclusion, and page title—to construct mitigation rules. Recommended defensive actions include adding blessnetwork.xyz and its resolved IP 104.21.80.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控