tvqpic[.]pics
“Roblox”
tvqpic.pics — 内容不可用 (HTTP 502). 诈骗类型:Gaming Scam. 证据摘要: VirusTotal 15/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); PhishDestroy score 95/100. 注册商: NameSilo.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain is flagged as an elevated-risk phishing threat specifically designed to impersonate the Roblox authentication portal. Analysis indicates the site presents a fraudulent login interface under the page title 'Roblox,' aiming to harvest user credentials through social engineering tactics. The threat type is categorized as generic phishing with a focus on gaming platform credential theft, a common vector for account takeovers and subsequent fraud. Infrastructure analysis reveals the domain tvqpic.pics was registered on August 06, 2025, through NameSilo, LLC, a registrar frequently observed in phishing operations. It resolves to the IP address 188.114.97.3, which is associated with Cloudflare's network, a technique often employed to obfuscate malicious infrastructure. Detection metrics show 15 out of 95 security vendors on VirusTotal flagged the domain as malicious, while it appears on one additional security blocklist. The domain employs HSTS and HTTP/3 protocols, likely to mimic legitimate security practices and evade basic detection mechanisms. Despite its current offline status, the domain's recent creation and detection history warrant continued monitoring. Mitigation against this specific threat type requires a multi-layered approach. Users should verify domain authenticity by cross-referencing URLs with official sources before entering credentials, particularly on gaming-related sites. Network-level protections should block access to newly registered domains (NRDs) with gaming-related keywords for at least 30 days post-registration, as this domain was created less than two weeks prior to detection. Security teams are advised to implement credential monitoring for accounts potentially exposed to this campaign, as compromised credentials may be leveraged for secondary attacks. Additionally, organizations should configure email and web filtering systems to quarantine messages containing links to domains registered through high-risk registrars like NameSilo when associated with gaming brands.
网络安全情报 Registrar context
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of tvqpic.pics · checked Jun 26, 2026
证据与外部报告
PD-20260331-D2BB13 Recipient: abuse@namesilo.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。