buxgifts[.]click
“Add Robux”
buxgifts.click — 内容不可用. 品牌冒充:Roblox. 证据摘要: VirusTotal 23 detections (engine total unavailable) (ADMINUSLabs, BitDefender, CRDF, Cluster25, Criminal IP); URLQuery 5 alerts; URLScan malicious verdict; Spamhaus DBL_SPAM; CF Radar malicious; PhishDestroy score 100/100. 注册商: Dynadot.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
buxgifts.click has been identified as a phishing domain targeting users seeking to add Robux to their accounts. The domain uses a deceptive page titled 'Add Robux' to lure users into providing sensitive information under the guise of offering in-game currency associated with a popular gaming platform. This tactic is a common method used to exploit players looking for free or discounted in-game items.
The domain was created on February 26, 2026, and is registered through Dynadot LLC. It resolves to IP address 91.218.49.169, located in Ukraine and operated by AS6698 Virtual Systems LLC. The site's legitimacy is undermined by a VirusTotal score, where 23 out of 95 security vendors have flagged it as suspicious. Furthermore, it is listed on one security blocklist and has been blocked by a security service known to specialize in phishing deterrence. The SSL certificate used is issued by Let's Encrypt, which is often utilized by malicious sites due to its free nature.
Currently, buxgifts.click is offline following intervention from a blocking entity. Although the immediate threat is mitigated, the fact that the domain was operational for a period signifies potential exposure risk to users who interacted with the site before it was taken down. Continuous monitoring of similar domains is advised, and users should remain cautious of unsolicited offers related to gaming currencies, particularly those promising free or additional items without credible verification.
安全信号
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | buxgifts.click |
phishing | Phishing Block |
| Cloudflare DNS | buxgifts.click |
malicious | Sinkholed |
| DigiCert UltraDNS | buxgifts.click |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | buxgifts.click |
malicious | Sinkholed |
| Quad9 DNS | buxgifts.click |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 2 identified
High-performance web server compatible with Apache configurations.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of buxgifts.click · checked Mar 2, 2026
证据与外部报告
PD-20260226-D5F115 Recipient: abuse@dynadot.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。