roblox-com[.]de
“Default Web Site Page”
The domain roblox-com.de was registered on 2026-03-06 and is currently classified as a high‑risk brand‑impersonation site targeting the Roblox brand. Active monitoring shows the domain resolves to the IPv4 address 151.247.193.142, which is assigned to AS399486 operated by Canada Inc. and geolocated in France.
The authoritative name servers for the zone are ns1.eggywall.cc and ns2.eggywall.cc, both of which are associated with known malicious hosting infrastructure. The site returns an HTTP 301 redirect with the page title “Default Web Site Page” and does not present a TLS certificate, forcing all connections to occur over clear‑text HTTP.
Reputation services assign a Gridinsoft trust score of 0 out of 100 and the domain appears on a single security blocklist. On VirusTotal, 7 of 95 scanning engines flag the domain as malicious, indicating partial detection coverage. The site is already listed by PhishDestroy as a confirmed phishing host and is tagged with a gaming‑scam profile.
Analysis indicates the primary objective is to lure Roblox users to a counterfeit login page, leveraging the brand name in the domain to increase credibility. However, the limited number of blocklist entries and the modest VirusTotal detection rate suggest that the payload or credential‑harvesting page may be hosted elsewhere or is still under development, leaving some behavioral details unknown.
Defenders should block DNS resolution for roblox-com.de at the network perimeter and enforce HTTPS‑only policies to prevent accidental exposure to the unsecured redirect. Email gateways and web proxies should be configured to flag any URLs containing “roblox‑com.de” or similar variations. Continuous threat‑intel feeds should be consulted for updated indicators, and any observed credential submissions to the domain should be treated as compromised and trigger incident response procedures.
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
10 个来源 · 同步于 2026年8月10日
检测时间线
-
VirusTotal
stage4.timeline.transition
-
Cloudflare Radar
stage4.timeline.scan_saved · stage4.timeline.open_scan
-
Cloudflare Radar
stage4.timeline.scan_saved · stage4.timeline.open_scan
-
stage4.timeline.status
stage4.timeline.transition
-
stage4.timeline.status
stage4.timeline.transition
-
stage4.timeline.status
stage4.timeline.transition
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控