roblox[.]mq
“Catalog - Roblox”
Gespeicherte Erkennung
Cloaking-Warnung
- Cloaking-Typ
content_divergence- Cloaking-Wert
- 1/6
Zusammenfassung der Beweislage
The domain roblox.mq was registered on January 10, 2025 through Gohost (ASN 208191). It resolves to the IPv4 address 91.231.222.76, which is advertised by AS36680 Netiface LLC and geolocated to Slovenia. The authoritative name servers are ns1.eggywall.cc and ns2.eggywall.cc. The site presents an HTTP 301 redirect and serves a TLS certificate issued by Let’s Encrypt (certificate identifier E8). The domain is currently marked as high risk and remains active.
Infrastructure analysis reveals a web stack built on Nginx with HSTS enabled and front‑end assets powered by Bootstrap. The domain’s Gridinsoft trust score is 0 out of 100, indicating a malicious reputation. It is listed on two public phishing blocklists, PhishDestroy and PhishingDB, confirming active abuse. The site also enforces HTTP Strict Transport Security, which can aid in detecting spoofed connections.
Threat intelligence flags roblox.mq as a brand‑impersonation campaign targeting the Roblox brand. The page title observed on the site is “Catalog – Roblox”, and the scam is categorized as a gaming‑related fraud. VirusTotal scans have resulted in 21 out of 95 security vendors marking the domain as malicious. AlienVault OTX has cited the domain in 19 separate threat‑intel pulses. The presence on multiple blocklists and the volume of vendor detections underscore the likelihood of credential‑stealing or malicious redirects.
Given the high risk rating and confirmed active status, defenders should block both the domain name and its hosting IP at perimeter defenses. DNS sinkholing or NXDOMAIN responses for roblox.mq can disrupt victim access. Continuous monitoring of the associated name servers and ASN for new sub‑domains is advised, as well as updating detection rules to include the observed page title and TLS fingerprint. Security teams should also consider sharing indicators of compromise with industry sharing groups to accelerate broader mitigation.
Data Coverage
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 11.08.2026
Erkennungszeitleiste
-
Cloudflare Radar
Cloudflare-Radar-Scan gespeichert · Scan öffnen
-
Domainstatus
Erreichbar → Nicht erreichbar
-
Cloudflare Radar
Cloudflare-Radar-Scan gespeichert · Scan öffnen
Technologien
3 Technologien mit hoher Konfidenz erkannt
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of roblox.mq · checked Apr 23, 2026
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt