cce-inv.com
“CCE INV | Cryptocurrency trading and invest platform”
Evidence Summary
Analysis of the domain cce-inv.com, observed on the report date of August 06, 2026, indicates active malicious infrastructure consistent with a generic phishing operation. The domain resolves to the IP address 104.21.76.51, which is the sole network indicator currently available. Reputation checks show that cce-inv.com appears on one security blocklist and has been explicitly blocked by the PhishDestroy service, confirming that at least one defensive feed has categorized the domain as hostile. VirusTotal scans reveal that 7 out of 91 security vendors have flagged the domain, providing independent corroboration of its malicious intent.
The elevated risk rating aligns with the observed detection density and the presence on a blocklist, reinforcing the need for heightened vigilance. No additional intelligence such as registrar details, SSL certificate data, HTTP response codes, or page title content has been disclosed; consequently, the full scope of the site’s payload or victim targeting remains undefined. Defenders should prioritize immediate DNS sinkholing or blocking of the 104.21.76.51 address at network perimeters, and incorporate the domain into web filtering policies across all user endpoints.
Continuous monitoring of threat intelligence feeds for any new detection signatures or blocklist inclusions is advised, as further evidence may emerge that clarifies the phishing campaign’s tactics, techniques, and procedures. Organizations employing automated URL reputation services should ensure that the domain is flagged in their allow‑list exceptions to prevent accidental exposure. In the absence of additional technical artifacts, the current evidence set justifies classifying cce-inv.com as an active, elevated‑risk phishing domain pending further investigation.
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | cce-inv.com |
malicious | Sinkholed |
Forensic History & Detection Timeline
-
Domain Status Transition Sep 11, 2026 · 00:01 UTCDomain state transitioned from alive to dead.
-
Threat First Observed Aug 7, 2026 · 00:40 UTCDomain ingestion complete. Initial state is marked as alive pointing to IP
172.67.188.171.
Threat Response Pipeline
Public Blocklist Status
Technologies · 4 identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of cce-inv.com · checked Aug 7, 2026
Community intelligence
1 community report
CategoryPIGBUTCHERING
Evidence & External Reports
“Hello Paybis Support, I urgently need your assistance regarding a Bitcoin transaction that I made from my Paybis wallet. I believe I may have been the victim of a cryptocurrency investment scam. I transferred 0.00091939 BTC (approximately $59.65) from my Paybis wallet to the following Bitcoin address: Recipient address: bc1qsluq2ds4v4kdlghgecuxtclahdd7sk9gt8x4w6 Transaction ID (TXID): c9556423e9433b114c979c272bfd71ca11cf190e25385868f4df70c31fb4ac9e The transaction has been co”
PD-20260806-762D7C Recipient: abuse@ordertld.com Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive