bloxify[.]co
bloxify.co 网络钓鱼与安全检查
“Bloxify - Robux Tool”
bloxify.co — 隐形 · 可达 (HTTP 502). 品牌冒充:Roblox. 证据摘要: VirusTotal 2/91 (Gridinsoft, SOCRadar); cloaking observed; PhishDestroy score 86/100. 注册商: Spaceship.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy first observed bloxify.co on Apr 14, 2026. Stored content metadata identifies Roblox as the apparent target. The captured page title is “Bloxify - Robux Tool”. Page analysis recorded additional brand references to Robux. Current evidence score: 86/100 (critical).
One source contains a positive finding: VirusTotal. VirusTotal recorded 2 detections among 91 engines: Gridinsoft, SOCRadar on Jun 27, 2026 at 03:10 UTC. Non-positive and contextual checks: The separate external-blocklist snapshot contained no matches on Aug 8, 2026 at 02:20 UTC. URLQuery recorded no positive detection; no observation timestamp was retained. On Apr 14, 2026 at 17:28 UTC, Google Safe Browsing returned no flag; PhishStats returned no feed match. URLScan completed without a malicious verdict (score 0) on Jul 29, 2026 at 03:08 UTC.
Cloaking was recorded with HTTP 502 on Aug 7, 2026 at 01:11 UTC. The cloaking probe recorded content split conditional delivery at 1/100 on Aug 7, 2026 at 01:11 UTC: dead_http: raw=http_502; http=502; via=http_proxy. Registration records for the domain list Spaceship, Inc. as the registrar and Apr 7, 2026 as the creation date. Registration preceded first observation by 7 days. At collection time, the hostname resolved to 64.29.17.1 on AS16509 (Amazon.com, Inc.). The IP and ASN identify shared Vercel edge infrastructure; the origin server is not established by this address. DOM analysis on Jul 29, 2026 at 04:01 UTC returned 86/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. TLS metadata lists Let's Encrypt as the certificate issuer; checked Jul 9, 2026 at 10:00 UTC.
Stored content provides classification context, but only one source contains a positive finding. The target field identifies Roblox, but the record does not establish whether the page requested credentials, a seed phrase, or a wallet connection.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web analytics service tracking website traffic and user behavior.
marketingplatform.google.comVirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of bloxify.co · checked Apr 14, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。