rroblox.wf
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of rroblox.wf
The domain rroblox.wf appears to present itself as a Roblox-themed website. Its page title and meta description copy Roblox branding and messaging, and the screenshot shows a sign-up form styled to resemble the official Roblox registration page. The page also references assets and links associated with Roblox infrastructure, which suggests it is attempting to imitate the look and feel of the well-known gaming platform.
Based on the domain name and visible content, this does not appear to be an independent gaming community or fan site. Instead, it appears to be a look-alike page using Roblox branding on a separate domain that is not the official roblox.com domain. No legitimate operator identity is visible in the provided scan data, and the domain itself is very new, which may increase uncertainty about its authenticity.
Safety Assessment for rroblox.wf
This domain shows multiple risk indicators at the time of this scan. It was flagged by 19 out of 91 security engines, and separate threat-database checks included listings in two threat databases. The page also closely resembles Roblox while using a different domain name, which may indicate a look-alike site intended to capture user credentials or other personal information. In addition, the malware scan reported a suspicious object on the main page and flagged a related link on the same domain.
The domain is only 52 days old and has no established traffic ranking in the provided data, which can be consistent with newly created phishing infrastructure. Although one major browsing-protection source was clean at the time of this scan, the domain's IP address was listed on one mail-reputation blocklist, which is a weaker signal but still worth noting. Taken together, the combination of multi-engine phishing detections, threat-database listings, brand imitation, and a very recent registration materially raises risk.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid TLS certificate issued by Google Trust Services, expiring on 2026-09-17. It appears to be served through Cloudflare infrastructure, using Cloudflare nameservers and a Cloudflare-associated IP address in Toronto, Canada. The web server identified itself as "public-gateway." DNSSEC status was reported as unknown.
From a security-analysis perspective, the presence of HTTPS should not be treated as proof of legitimacy, since phishing pages commonly use valid certificates as well. The main technical concerns in this scan are the domain's very recent registration, its use of a look-alike name, the suspicious file finding on /index, and the flagged self-referential link on the same host.
Share your experience with this website. Was it safe? Did you encounter any issues?