Analysis on 29 July 2026 identifies robloxlivestram.github.io as an active phishing infrastructure. The domain is registered through GitHub, Inc., indicating it is hosted on GitHub Pages. DNS resolution returns the IPv4 address 185.199.108.153; nameserver information could not be retrieved (NS_NOT_FOUND). The site is presently listed on one security blocklist and has been blocked by the PhishDestroy feed.
Google Safe Browsing classifies the URL under the social engineering category, confirming the presence of deceptive content aimed at credential harvesting. VirusTotal records show that the domain was examined by 91 scanning engines, none of which reported a detection at the time of analysis; the absence of detections does not imply benign intent. No public SSL certificate details, HTTP status codes, or page title information were available in the provided intelligence, leaving the exact lure and victim‑targeted brand undefined. The lack of visible page metadata suggests that the payload may be delivered dynamically or that the site has not been crawled extensively.
Defenders should continue to block the domain at perimeter filtering devices, add it to internal blacklists, and monitor for any DNS or HTTP requests to 185.199.108.153 that originate from internal hosts. Continuous re‑scanning with multi‑engine services is recommended to capture any future changes in the payload or detection status. Organizations employing browser‑based security controls should ensure that Google Safe Browsing or equivalent URL reputation services are enabled to intercept user navigation attempts to this address. Because the domain resides on a legitimate cloud‑hosting provider, takedown actions may require coordination with GitHub's abuse team, referencing the social‑engineering flag and blocklist listings.