blockfeelogine[.]webflow[.]io
“BlockFi Login l BlockFi Trading Platform to Buy Bitcoin”
已存储的观测记录
观测到的标题差异
证据摘要
The domain blockfeelogine.webflow.io has been identified as a phishing infrastructure impersonating BlockFi, a cryptocurrency trading platform, with the intent of conducting an investment scam. The domain is currently offline, but prior analysis confirms its malicious use in brand impersonation targeting users of financial services involving Bitcoin and other digital assets. The page title, 'BlockFi Login l BlockFi Trading Platform to Buy Bitcoin,' explicitly mimics legitimate BlockFi login portals to deceive victims into disclosing credentials or transferring funds under false pretenses. Analysis of the domain reveals multiple technical indicators of compromise. The domain was flagged by 19 of 95 security vendors on VirusTotal, indicating broad recognition of its malicious nature. It was registered through Webflow, a platform commonly exploited for rapid deployment of phishing pages due to its ease of use and hosting capabilities. The domain resolves to the IP address 172.64.151.8, associated with AS13335 (Cloudflare, Inc.), a network frequently leveraged to obscure the true origin of malicious infrastructure. The domain was created on March 04, 2026, and appears on at least one security blocklist. The SSL certificate is issued by Google Trust Services (WE1), which, while not inherently malicious, is often used to lend a false sense of legitimacy to phishing sites. Additional infrastructure analysis reveals the domain was blocked by enterprise-grade threat mitigation systems prior to being taken offline. The current status of blockfeelogine.webflow.io is offline, reducing immediate risk to end users. However, the infrastructure and tactics observed suggest potential for redeployment or reuse of similar domains. Organizations and individuals are advised to implement the following measures: (1) Block the domain and associated IP address (172.64.151.8) at the network perimeter to prevent accidental access; (2) Monitor for newly registered domains with similar naming patterns or impersonating BlockFi or other financial services; (3) Educate users on recognizing phishing attempts, particularly those involving cryptocurrency platforms, by verifying domain authenticity and avoiding unsolicited login requests; (4) Report the domain to relevant security teams and blocklist providers to aid in broader threat mitigation efforts. Given the elevated risk associated with investment scams, continuous vigilance and proactive monitoring of related infrastructure are recommended.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | blockfeelogine.webflow.io |
malicious | Sinkholed |
| OpenDNS | blockfeelogine.webflow.io |
phishing | Phishing Block |
| Cloudflare DNS | blockfeelogine.webflow.io |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
检测时间线
-
VirusTotal
0 → 16
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
-
VirusTotal
16 → 18
-
VirusTotal
19 → 18
技术
识别出 3 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of blockfeelogine.webflow.io · checked Mar 4, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控