# rbxred.pro — SUSPICIOUS > rbxred.pro is actively impersonating Roblox accounts for credential theft. Flagged by 0 of 95 VirusTotal vendors. Check the full report. ## Summary PhishDestroy identifies rbxred.pro as a live Roblox account phishing domain currently under investigation for active credential harvesting campaigns. The domain is being tracked under unique seed 0ec600 and has been confirmed to engage in fraudulent activities aimed at deceiving Roblox users into surrendering login credentials through spoofed login portals. As of the latest analysis, this threat remains in an active state with no confirmed takedown or mitigation at the domain or hosting level. This domain was flagged by 0 out of 95 VirusTotal security vendors, indicating it has not yet been widely detected by automated scanning systems despite its active deployment. The domain is registered through PDR Ltd. d/b/a PublicDomainRegistry.com and resolves to IP address 104.21.77.62, which is associated with multiple low-trust hosting environments. The domain was created on March 17, 2026, and currently holds a Let's Encrypt SSL certificate, suggesting an attempt to appear legitimate. Due to its recent creation and low detection rate, rbxred.pro represents a significant risk to unsuspecting users, particularly children and younger gamers who are primary Roblox users. As this phishing domain remains active and undetected by mainstream security platforms, users are strongly advised to avoid accessing rbxred.pro under any circumstances. Parents and guardians should educate Roblox players about the dangers of credential phishing and the importance of verifying website URLs before entering login information. Network administrators are recommended to block traffic to IP 104.21.77.62 at the firewall level and monitor internal DNS queries for this domain. If accidental exposure occurs, users should immediately change their Roblox password, enable two-factor authentication, and scan their device for malware using a reputable security suite. The domain status will continue to be monitored under seed 0ec600, and updates will be provided as new intelligence becomes available. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-17 15:16:03 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - IP: 104.21.77.62 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/rbxred.pro - PhishDestroy: https://phishdestroy.io/domain/rbxred.pro/ - LLM endpoint: https://phishdestroy.io/domain/rbxred.pro/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/rbxred.pro/ Last updated: 2026-04-06