geekbux[.]pages[.]dev
“GeekBux - Get free robux today!”
已存储的观测记录
观测到的标题差异
证据摘要
PhishDestroy identifies geekbux.pages.dev as an active cryptocurrency drainer that lures victims with fake ‘GeekBucks’ rewards. Once a visitor connects a wallet or submits seed phrases, the site silently drains tokens via a malicious smart-contract call or clipboard hijacker. Researchers observed traffic funneling through a Cloudflare front-end to IP 188.114.97.3, indicating bullet-proof hosting intended to evade takedowns.
This domain currently shows zero detections on VirusTotal despite wide abuse reports, is registered through Cloudflare, Inc., and resolves to Google-TLS-backed Cloudflare IP 188.114.97.3. The seed ‘44cd44’ confirms the identical hosting chain and configuration flagged in multiple simultaneous investigations.
If you visited geekbux.pages.dev at any point: immediately revoke any connected wallet permissions using tools like revoke.cash, transfer remaining assets to a fresh wallet with a new seed phrase, and run a malware scan on the device you used. Never reuse old seed phrases or private keys on new connections, even to verify safety.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
取证情报
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of geekbux.pages.dev · checked Mar 25, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控