rluxgames[.]click
“Add Robux”
Résumé des preuves
PhishDestroy identifies rluxgames.click as an active crypto drainer scam site falsely posing as a gaming platform. The domain leverages deceptive branding to trick users into connecting crypto wallets, leading to fund theft. This is not a generic phishing attempt but a targeted credential theft campaign designed to drain cryptocurrency assets. Current status of the domain is confirmed malicious and actively serving malicious content.
This domain was flagged by 4 of 95 VirusTotal security vendors as malicious at the time of detection. It resolves to IP address 91.218.49.169 and was registered through Dynadot, LLC on December 21, 2025, making it a recently established threat. The infrastructure uses a Let's Encrypt SSL certificate, which may enhance its credibility to unsuspecting users. With minimal detection coverage and freshly registered infrastructure, this domain represents an elevated risk to crypto investors and gamers alike.
Due to the confirmed crypto drainer functionality and low detection coverage by security vendors, PhishDestroy recommends immediate action to block rluxgames.click at the network perimeter. Organizations should add this domain and its IP address (91.218.49.169) to firewall blocklists and DNS sinkholes. Users encountering this domain should report it to their cryptocurrency wallet providers and avoid any interaction with the site or related links. Additionally, security teams should monitor for connections to this IP range as threat actors often shift infrastructure. This threat should be treated with high priority due to the irreversible nature of cryptocurrency losses once credentials are compromised.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260422-698C39- Titre de la page capturée
- Add Robux
- Artefact PDF
- Preuve PDF
Fondement juridique
Texte intégral des preuves
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | rluxgames.click |
malicious | Sinkholed |
| OpenDNS | rluxgames.click |
phishing | Phishing Block |
| DigiCert UltraDNS | rluxgames.click |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | rluxgames.click |
malicious | Sinkholed |
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
7 technologies identifiées avec une forte confiance
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of rluxgames.click · checked Apr 22, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif