Phishing detection: roblox.com.ml
Roblox Screenshot
No screenshot available yet
Captured automatically on the next refresh cycle
Investigate
Domain
roblox.com.ml2 CT hosts on apex
IP
31.56.209.148
URL
https://roblox.com.ml/users/355718571312/profile
Cert
YE2
Phishunt analysis Beta
23
low suspicionheuristic risk score · not a probability
Why?
- +5.3 Keyword match
- +4.5 Brand in title
- +3.0 OpenPhish
- +2.2 Country mismatch
- +1.3 Brand typo
- +1.2 ASN reputation
- +1.1 No CSP header
- +1.1 No HSTS header
- +1.0 Site cluster
- +0.6 Brand impersonation in path
- +0.6 Suspicious TLD
- +0.3 Free CA
- +0.3 Long domain
- +0.1 External scripts
- +0.1 Deep subdomain
16 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting
Site spoofs Roblox by registering a domain that mimics roblox.com under a different ccTLD, targeting user profile pages. Hosted on infrastructure in the Netherlands via an obscure provider, it is flagged by OpenPhish and likely harvests Roblox account credentials.
Brand impersonation in pathOpenPhishCountry mismatch
AI-generated from stored detector signals - the AI never visited the site. · 2026-09-14 · confidence 78%
Domain & Network
Whois
Network
Country
The Netherlands
Hosting
SWISSNET LLC
ASN
AS209373
TLS Cert
YE2
External detection
OpenPhish
CleanGoogle Safe Browsing · PhishTank · TweetFeed · urlscan.io
Requests
Resources
Observables
Related websites
Report this phishing
Submit to blocklists
urlscan
VirusTotal
Whois
ipinfo
Greynoise