feji[.]in
“[📜] Grow a Garden 🌶️ - Roblox”
证据摘要
This domain, feji.in, poses as a legitimate Roblox game page titled Grow a Garden to deceive users into entering their account credentials. The site mimics Roblox's branding and interface, tricking victims into believing they are accessing an official game portal. Once credentials are entered, they are captured by threat actors for unauthorized account access, in-game item theft, or further malicious activities such as spreading malware or conducting financial fraud using compromised accounts. Analysis indicates this domain was registered on March 21, 2025, through Porkbun LLC, a registrar commonly used for both legitimate and malicious domains. The site is flagged by 17 out of 95 security vendors on VirusTotal, and it appears on two security blocklists: PhishDestroy and PhishingDB. Infrastructure analysis reveals the domain resolves to IP address 104.21.40.217, hosted on Cloudflare's network (AS13335), which is frequently leveraged to obscure the true origin of phishing infrastructure. The SSL certificate is issued by Google Trust Services, adding a superficial layer of legitimacy to the fraudulent site. If a user visited feji.in and entered their credentials, immediate action is required to mitigate risk. First, change the password for the affected Roblox account and enable multi-factor authentication if not already active. Review the account for unauthorized transactions, item deletions, or unfamiliar linked devices. Check connected email accounts for password reset attempts or suspicious activity, as compromised credentials may be used to pivot to other services. Monitor financial accounts if payment methods are linked to the Roblox account. Users should also scan their devices for malware, as some phishing pages deploy additional payloads. Report the incident to Roblox support and consider notifying local cybersecurity authorities if significant financial or personal data loss occurs.
Data Coverage
安全信号
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
检测时间线
-
VirusTotal
17 → 16
-
VirusTotal
16 → 15
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控