roblox[.]com[.]ht
“www.roblox.com.ht”
证据摘要
Analysis of the domain roblox.com.ht indicates a high‑confidence brand‑impersonation campaign targeting users of the Roblox gaming platform. The domain was registered on 2026-01-04 through the registrar Key-Systems GmbH and resolves to the IPv4 address 138.226.236.35, which is assigned to Neon Core Network LLC in Belize. The page title returned by the server is "www.roblox.com.ht", confirming that the site explicitly references the target brand. The infrastructure exhibits a Gridinsoft trust score of 0 / 100, and AlienVault OTX has indexed the domain in fifteen separate threat‑intel pulses, underscoring its relevance to the security community.
Both PhishDestroy and DiscordPhishing blocklists actively deny traffic to the domain, and it appears on two additional security blocklists, further reinforcing its malicious reputation. VirusTotal scans show that eighteen of ninety‑three anti‑malware engines flag the domain, indicating that a substantial portion of commercial detection products consider it unsafe. The domain is currently taken offline, but historical evidence suggests it was used for a gaming‑scam operation that likely attempted to harvest credentials or monetize fraudulent in‑game transactions. No SSL certificate details or HTTP response codes are available, and the site’s content has not been publicly captured, leaving the exact phishing mechanics unknown.
Defenders should immediately block both the domain and its hosting IP at perimeter defenses, update URL filtering policies to include the identified blocklists, and monitor for newly registered domains that mimic the " .com.ht" pattern combined with the Roblox brand. Ongoing threat‑intel feeds, especially AlienVault OTX and Gridinsoft, should be consulted for any resurgence of activity. Incident response teams should also advise end users to verify the authenticity of any Roblox‑related communications and to avoid entering credentials on untrusted URLs.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控