robloxf[.]com[.]es
Análisis de phishing y seguridad de robloxf.com.es
“robloxf.com.es”
robloxf.com.es — Contenido no disponible (HTTP 502). Suplantación de marca: Roblox; Tipo de estafa: Gaming Scam. Resumen de las pruebas: VirusTotal 19/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); CF Radar malicious; PhishDestroy score 95/100.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
The domain robloxf.com.es is actively hosting a brand‑impersonation campaign that targets the Roblox gaming platform. The site returns HTTP 200 and presents the page title “robloxf.com.es”, matching the domain name. No TLS certificate is configured, indicating that the service is delivered over plain HTTP only. DNS resolution points to the IPv4 address 185.53.177.20, which belongs to Team Internet AG (AS61969) in Germany. The domain is delegated to four EuroDNS name servers (ns1‑ns4.eurodns.com).
Security telemetry shows the domain has been placed on at least one public blocklist and was flagged by PhishDestroy. In the AlienVault Open Threat Exchange, the domain appears in sixteen distinct threat‑intel pulses, reinforcing its malicious reputation. VirusTotal scans identified nineteen of ninety‑five security vendors as flagging the domain, confirming detection by multiple anti‑malware engines. The campaign is classified as a “Gaming Scam” and explicitly impersonates Roblox, as indicated by the brand target field.
Current status remains active as of the report date (23 July 2026). While the page content has not been publicly disclosed, the combination of blocklist presence, multiple OTX references, and vendor detections provides strong evidence of malicious intent. Defensive teams should consider immediate DNS or proxy blocking of robloxf.com.es and its underlying IP address, monitor for any related sub‑domains, and enforce TLS inspection to capture any future credential‑phishing attempts that might migrate to encrypted channels. Ongoing observation of the hosting ASN and associated traffic patterns is advised to detect potential expansion of the infrastructure.
Señales de seguridad
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Análisis de VirusTotal
Evidencias archivadas
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.