robolitiony[.]lol
“BLUYS Script Execution - Advanced Roblox Script Executor”
PhishDestroy identifies robolitiony.lol as a drainer phishing domain posing as a cryptocurrency service. This domain mimics legitimate platforms to trick users into connecting wallets and signing malicious transactions that drain funds. No known brand impersonation detected yet, but the site uses a drainer kit likely sourced from bulletproof kits sold on underground forums. The threat vector targets wallet holders seeking quick token launches or airdrops. Technical indicators for robolitiony.lol include a VirusTotal detection score of 2/95, a Let’s Encrypt SSL certificate, registration through PDR Ltd. d/b/a PublicDomainRegistry.com, domain creation on March 31, 2026, and resolution to IP 104.21.13.175. Google Safe Browsing (GSB) has not yet flagged the domain, and no public blocklists list it. The domain age is under 24 hours at the time of analysis, indicating a very recent deployment likely designed for short-lived campaigns. This domain is currently ACTIVE with a status of under_investigation by security teams. Users should immediately block access to 104.21.13.175 and robolitiony.lol at the firewall or DNS level. Avoid visiting or interacting with the site due to active drainer functionality. Remaining risk is MODERATE-HIGH given zero detections on VirusTotal and fresh domain registration, suggesting the campaign may still be in early propagation. Expect detection rates to rise as threat intelligence feeds update. Monitor wallets for unauthorized transactions and report any suspicious activity to wallet providers.
Gönderilen rapor kaydı
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260402-04303F- Yakalanan sayfa başlığı
- BLUYS Script Execution - Advanced Roblox Script Executor
- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (US):
18 U.S.C. § 1343 - Wire Fraud
18 U.S.C. § 1030 - Computer Fraud and Abuse Act (CFAA)
15 U.S.C. § 45 - FTC Act (Deceptive Practices)
Federal laws prohibit wire fraud, computer fraud, and deceptive business practices.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | www.youtube.com/s/player/4a6035e3/player_embed_es6.vflset/en_us/base.js |
audit | Hunting_JS_WebAssembly |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 kaynak · 10.08.2026 tarihinde eşitlendi
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Adli İstihbarat
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of robolitiony.lol · checked Apr 2, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin