robolitiony[.]lol
“BLUYS Script Execution - Advanced Roblox Script Executor”
証拠の概要
PhishDestroy identifies robolitiony.lol as a drainer phishing domain posing as a cryptocurrency service. This domain mimics legitimate platforms to trick users into connecting wallets and signing malicious transactions that drain funds. No known brand impersonation detected yet, but the site uses a drainer kit likely sourced from bulletproof kits sold on underground forums. The threat vector targets wallet holders seeking quick token launches or airdrops. Technical indicators for robolitiony.lol include a VirusTotal detection score of 2/95, a Let’s Encrypt SSL certificate, registration through PDR Ltd. d/b/a PublicDomainRegistry.com, domain creation on March 31, 2026, and resolution to IP 104.21.13.175. Google Safe Browsing (GSB) has not yet flagged the domain, and no public blocklists list it. The domain age is under 24 hours at the time of analysis, indicating a very recent deployment likely designed for short-lived campaigns. This domain is currently ACTIVE with a status of under_investigation by security teams. Users should immediately block access to 104.21.13.175 and robolitiony.lol at the firewall or DNS level. Avoid visiting or interacting with the site due to active drainer functionality. Remaining risk is MODERATE-HIGH given zero detections on VirusTotal and fresh domain registration, suggesting the campaign may still be in early propagation. Expect detection rates to rise as threat intelligence feeds update. Monitor wallets for unauthorized transactions and report any suspicious activity to wallet providers.
送信済み証拠のスナップショット
- 送信日時
- 台帳レコード
- 1
- ケース ID
PD-20260402-04303F- 取得ページのタイトル
- BLUYS Script Execution - Advanced Roblox Script Executor
- PDF 資料
- 証拠 PDF
証拠全文
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (US):
18 U.S.C. § 1343 - Wire Fraud
18 U.S.C. § 1030 - Computer Fraud and Abuse Act (CFAA)
15 U.S.C. § 45 - FTC Act (Deceptive Practices)
Federal laws prohibit wire fraud, computer fraud, and deceptive business practices.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
ネットワークセキュリティインテリジェンス
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | www.youtube.com/s/player/4a6035e3/player_embed_es6.vflset/en_us/base.js |
audit | Hunting_JS_WebAssembly |
脅威対応 Pipeline
ブロックリストの確認範囲
監視対象の外部情報源 10 件 · 保存スナップショット 2026年8月10日
保存済みキャプチャ
ドメイン・インテリジェンス
技術詳細DNS、TLS 名、タイムスタンプ
ICANN OVERSIGHT
認定と RAA の背景
認定と RAA の背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
フォレンジックインテリジェンス
VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of robolitiony.lol · checked Apr 2, 2026
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください