roo2ya.com

Critical Risk

Critical Risk
Phishing / Credential Theft
Captured page preview of roo2ya.com

At a glance

Antivirus · registration · identity
Antivirus detections
4 flagged
4 malicious · 0 suspicious
ADMINUSLabs
Domain registration
Dec 9, 2019Registered
7 years oldAt scan time
Operator identity
Claimed Only
Contact details are present but not independently verified
Verified factsSaved with this scan
  1. 4 engines classified the URL as malicious and 0 as suspicious; 56 returned harmless, 32 returned undetected, and 0 returned no usable result.
  2. The domain was registered Dec 9, 2019 and was 7 years old at scan time.
  3. Operator identity: Claimed Only. Contact details are present but not independently verified
  4. Google Safe Browsing returned no listed threat categories for this address at scan time.
  5. The site presented a valid TLSv1.3 certificate at scan time.

Website Preview

Captured page preview of roo2ya.com
Visual findings

The website presents as a legitimate cryptocurrency news and information platform with a clean, professional design and no visible indicators of deceptive intent.

  1. 1Professional financial news layout with consistent branding
  2. 2No intrusive pop-ups or urgent call-to-action banners
  3. 3Content appears to be a standard cryptocurrency news and analysis portal

Web Research

No independently sourced claims were found for this report.

Threat Detection

Antivirus results, browser warnings, isolated page observations, and the threat pattern identified in this report.

Antivirus distribution
Recorded engine classifications, not a blanket clean bill
92 engines
Malicious4
Suspicious0
Harmless56
Undetected32
No result0
Antivirus consensus

Antivirus engine results

Result date Jul 21, 2026
Detection matrix
4 engines flagged this URL

This scan saved classifications from an antivirus network of 92 engines. Each malicious or suspicious classification is listed below by engine name and should be weighed with the rest of the report.

4Malicious0Suspicious56Harmless32Undetected0No result92Engines
0
of 92
ADMINUSLabs
Malicious· malicious
alphaMountain.ai
Malicious· phishing
Fortinet
Malicious· phishing
Gridinsoft
Malicious· phishing

4 antivirus engines flagged this URL. A single classification is not consensus by itself. Review its label together with the page, identity, behavior, and history evidence shown in this report.

Threat pattern
Phishing / Credential Theft
Threat tags
Phishing / Credential Theftcrypto news portal
Scam-Type Likelihood

2 of 22 categories showed signals

This profile separates the site's primary threat from other patterns supported by the saved page evidence, public research, and security findings.

Top match: Crypto News Portal
Crypto News Portal
High likelihood
90/100
  • Title and meta description explicitly describe independent crypto journalism with live market data
  • Page content includes live price tickers, market-cap tables, DeFi TVL data, educational articles, and free tools (converter, DCA planner, gas tracker)
  • Editorial framing device called 'The Aperture' and repeated 'Not financial advice' disclaimers are present throughout
  • Visual analysis confirms professional financial-news layout with no intrusive pop-ups or urgent CTAs
Phishing
Moderate likelihood
35/100
  • Four AV engines (ADMINUSLabs, alphaMountain.ai, Fortinet, Gridinsoft) explicitly flagged the domain as phishing
  • Login form is present on the page
  • No direct evidence of credential-harvesting behavior or fake login branding observed in page text or visuals

Technical Details

Identity, domain, infrastructure, and connection facts saved with this scan.

July 21, 2026 at 11:02 AM UTC

Identity

6 facts
Operator
Claimed Only
On-domain email
Not observed
Other email
1 address
Phone
Not observed
Postal address
Not observed
Social profiles
Not observed

Domain

8 facts
Domain age
7 years old
Registered
Dec 9, 2019
Registrar
GoDaddy.com, LLC
Expires
Dec 9, 2026
WHOIS updated
Dec 12, 2025
Registrant
Unavailable
Registration country
Unavailable
WHOIS privacy
Not observed

Infrastructure

14 facts
HTTPS
Valid certificate
TLS protocol
TLSv1.3
Certificate issuer
Let's Encrypt · YE1
Certificate subject
roo2ya.com
Certificate valid from
Jul 6, 2026
Certificate valid to
Oct 4, 2026
Network address
167.233.196.168
ASN
Unavailable
Hosting organization
Hetzner Online GmbH
Country
DE
Server
nginx
Site platform
WordPress
IP reputation
0% confidence · 0 reports
Tor exit node
No

Connections

13 facts
Scan scope
Domain
Destination host
roo2ya.com
Redirects
1
Cross-domain redirect
No
Redirect status codes
301 → 200
Lookalike characters
Not observed
Internationalized domain
No
Page response
200
Observation coverage
Unavailable
Extracted links
Unavailable
Unique IPs contacted
Unavailable
Countries contacted
Unavailable
Referenced domains
0

What to do

1
Before interacting
Do not sign in
2
If you already interacted

If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.

Final Verdict

Do not sign in

Key evidence

  1. 14 engines classified the URL as malicious and 0 as suspicious; 56 returned harmless, 32 returned undetected, and 0 returned no usable result.
  2. 24 of 92 security services reported a concern.
  3. 3The domain was registered 7 years ago.
Evidence: strongScope: DomainFresh scan: July 21, 2026 at 11:02 AM UTC

Safety FAQ

What should I do about roo2ya.com?+

Do not sign in.

How old is roo2ya.com?+

roo2ya.com is 7 years old and was registered dec 9, 2019.

What if I already interacted with roo2ya.com?+

If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.

When was this report updated?+

This report reflects the scan completed July 21, 2026 at 11:02 AM UTC.