robxitoploit[.]lol
“BLUYS Script Execution - Advanced Roblox Script Executor”
robxitoploit.lol — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: ["roblox"]; घोटाले का प्रकार: Generic Phishing. साक्ष्य सारांश: VirusTotal 0/94; URLQuery 2 alerts; PhishDestroy score 53/100. रजिस्ट्रार: PDR.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain robxitoploit.lol is under active investigation as a generic phishing host masquerading as an Advanced Roblox Script Executor named 'BLUYS Script Execution'. This fraudulent page specifically impersonates Roblox tooling, luring users into downloading or executing a crypto drainer disguised as a legitimate script executor. The page title and branding closely mimic legitimate Roblox executor offerings to maximize deception and drive installations of malicious payloads.
Forensic analysis reveals the following technical indicators: the domain was registered on April 03, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com, resolves to IP address 188.114.96.3, and currently holds a Let's Encrypt SSL certificate. Despite its recent creation and low detection profile, VirusTotal shows 0 detections out of 95 engines as of the last scan, indicating it is not yet widely flagged. The domain remains unblocked by Google Safe Browsing (GSB) and has not been added to major threat intelligence blocklists.
As of this report, the status of robxitoploit.lol is active and under investigation. Users are advised not to access or interact with this domain. PhishDestroy is tracking this threat and will coordinate takedown and blocklisting efforts with hosting providers and registrars. The risk level remains under investigation but is currently assessed as elevated due to the active hosting of a potential drainer payload. Immediate caution is recommended for any users who may have visited this domain or downloaded content from it.
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | www.youtube.com/s/player/f4c47414/player_embed_es6.vflset/en_us/base.js |
audit | Hunting_JS_WebAssembly |
| DNS4EU | robxitoploit.lol |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of robxitoploit.lol · checked Apr 5, 2026
साक्ष्य और बाहरी रिपोर्टें
PD-20260404-033C8A Recipient: abuse@publicdomainregistry.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।