الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 2. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

roblox-mortem-metallum-infinite-health[.]pages[.]dev

“Finding a Roblox Mortem Metallum Infinite Health Script | Roblox Mortem Metallum Infinite Health”

حكم التهديد حرجة 76/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 2/91 URLQuery threat systems: 22 alerts انتحال العلامة التجارية: Roblox
15/06/2026 Roblox CDN
ملخص التقرير

roblox-mortem-metallum-infinite-health.pages.dev — لم يتم التحقق منها. انتحال العلامة التجارية: Roblox; نوع الاحتيال: Gaming Scam. ملخص الأدلة: VirusTotal 2/91 (alphaMountain.ai, Fortinet); URLQuery 22 alerts; PhishDestroy score 76/100. مسجّل النطاق: Cloudflare Pages.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
8AB852BE
الدرجة
76/100

This domain is flagged as a Roblox cheat script phishing site targeting users seeking unauthorized game advantages. The threat type involves distributing fraudulent 'infinite health' scripts for Roblox's Mortem Metallum experience, likely delivering malware or credential harvesters under the guise of game modifications. Current risk level remains under investigation due to limited detection coverage. Infrastructure analysis reveals the domain was registered through Cloudflare Pages on April 16, 2026, resolving to IP address 188.114.96.3 (Cloudflare network, Canada). VirusTotal shows 0/95 detections, indicating no antivirus engines have flagged the domain at this time. The site appears on one security blocklist (PhishDestroy) and uses a Let's Encrypt SSL certificate (serial E8). Despite its recent creation, the domain remains active and presents a convincing facade for Roblox-related content. Mitigation requires immediate blocking of the domain and associated IP (188.114.96.3) at network perimeter devices. Security teams should monitor for connections to this infrastructure, particularly from endpoints with Roblox installed. User education should emphasize that third-party game scripts often contain malicious payloads, even when hosted on seemingly legitimate platforms. Network traffic analysis should focus on any downloads from this domain, as they likely contain executable components disguised as game modifications.

VirusTotal
VirusTotal
2 det.
URLQuery
URLQuery
22 threat alerts
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -89d
العمر
4 mo
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 2 / 91 URLQuery 22 threat-system alerts PhishStats لم يتم التحقق منها OTX no community references رادار CF no data URLScan capture not submitted URLScan verdict التقييم غير متاح حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 4 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
Threat Detection Systems 22 alerts
Detection System Indicator Verdict Alert
Quad9 DNS realizationnewestfangs.com malicious Sinkholed
DNS4EU realizationnewestfangs.com malicious Sinkholed
Cloudflare DNS preferencenail.com malicious Sinkholed
Hagezi Threat Feed preferencenail.com malicious Sinkholed
Quad9 DNS preferencenail.com malicious Sinkholed
Hagezi Threat Feed immigrationacre.com malicious Sinkholed
Quad9 DNS immigrationacre.com malicious Sinkholed
DNS4EU skinnycrawlinglax.com malicious Sinkholed
Hagezi Threat Feed skinnycrawlinglax.com malicious Sinkholed
Cloudflare DNS skinnycrawlinglax.com malicious Sinkholed
Quad9 DNS skinnycrawlinglax.com malicious Sinkholed
Cloudflare DNS sourshaped.com malicious Sinkholed
DNS4EU sourshaped.com malicious Sinkholed
Quad9 DNS sourshaped.com malicious Sinkholed
DNS4EU cdn.show-sb.com malicious Sinkholed
Quad9 DNS cdn.show-sb.com malicious Sinkholed
Cloudflare DNS cdn.show-sb.com malicious Sinkholed
DNS4EU cdn.show-creative1.com malicious Sinkholed
Quad9 DNS cdn.show-creative1.com malicious Sinkholed
Hagezi Threat Feed wayfarerorthodox.com malicious Sinkholed
DNS4EU wayfarerorthodox.com malicious Sinkholed
Quad9 DNS wayfarerorthodox.com malicious Sinkholed

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
9/11

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
الخادم / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مزود المنصة Cloudflare Pages
عنوان IP 188.114.96.3 CDN
الموقع الجغرافيCA Toronto, CA
الشبكةAS13335 · CloudFlare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف15/06/2026
TLS Fingerprint
TLS Observationvalid from 23/02/2026scanned 17/04/2026
Favicon Hash
عنوان الصفحة
Finding a Roblox Mortem Metallum Infinite Health Script | Roblox Mortem Metallum Infinite Health
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Let's Encrypt / E8
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

2 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed First positive detection Previous stored snapshot: 0 detections
alphaMountain.ai
Fortinet
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of roblox-mortem-metallum-infinite-health.pages.dev · checked Apr 17, 2026

99
Good
Performance
FCP
0.91s
First Contentful Paint
LCP
1.68s
Largest Contentful Paint
CLS
0.054
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
1.27s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
تحليل إعدادات الموقع
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
Valid robots.txt; no Disallow/Allow paths were extracted.
Sitemap 5 pages · HTTP 200

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/roblox-mortem-metallum-infinite-health.pages.dev"
  title="PhishDestroy threat report for roblox-mortem-metallum-infinite-health.pages.dev"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>