roblox[.]mq
“Catalog - Roblox”
Збережене виявлення
Виявлено маскування
- Тип маскування
content_divergence- Оцінка маскування
- 1/6
Зведення доказів
The domain roblox.mq was registered on January 10, 2025 through Gohost (ASN 208191). It resolves to the IPv4 address 91.231.222.76, which is advertised by AS36680 Netiface LLC and geolocated to Slovenia. The authoritative name servers are ns1.eggywall.cc and ns2.eggywall.cc. The site presents an HTTP 301 redirect and serves a TLS certificate issued by Let’s Encrypt (certificate identifier E8). The domain is currently marked as high risk and remains active.
Infrastructure analysis reveals a web stack built on Nginx with HSTS enabled and front‑end assets powered by Bootstrap. The domain’s Gridinsoft trust score is 0 out of 100, indicating a malicious reputation. It is listed on two public phishing blocklists, PhishDestroy and PhishingDB, confirming active abuse. The site also enforces HTTP Strict Transport Security, which can aid in detecting spoofed connections.
Threat intelligence flags roblox.mq as a brand‑impersonation campaign targeting the Roblox brand. The page title observed on the site is “Catalog – Roblox”, and the scam is categorized as a gaming‑related fraud. VirusTotal scans have resulted in 21 out of 95 security vendors marking the domain as malicious. AlienVault OTX has cited the domain in 19 separate threat‑intel pulses. The presence on multiple blocklists and the volume of vendor detections underscore the likelihood of credential‑stealing or malicious redirects.
Given the high risk rating and confirmed active status, defenders should block both the domain name and its hosting IP at perimeter defenses. DNS sinkholing or NXDOMAIN responses for roblox.mq can disrupt victim access. Continuous monitoring of the associated name servers and ASN for new sub‑domains is advised, as well as updating detection rules to include the observed page title and TLS fingerprint. Security teams should also consider sharing indicators of compromise with industry sharing groups to accelerate broader mitigation.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
Статус домену
Доступний → Недоступний
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of roblox.mq · checked Apr 23, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога