grokai-uk[.]com
Pemeriksaan phishing dan keamanan grokai-uk.com
“Grok AI - Official Platform | AI Trading 2025 | Over 10,000 Reviews”
grokai-uk.com — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Argent; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 3/93 (alphaMountain.ai, Bfore.Ai PreCrime, SOCRadar); URLQuery 1 alert; PhishDestroy score 65/100. Registrar: Name SRS AB.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
Analysis of grokai-uk.com shows a recent registration (21 February 2026) through Name SRS AB and immediate resolution to the Cloudflare address 172.67.185.183, announced under ASN 13335 (Cloudflare, Inc.) in the United States. The domain presents the page title “Grok AI - Official Platform | AI Trading 2025 | Over 10,000 Reviews,” yet no TLS certificate is deployed, leaving the site unencrypted. Trust scoring from Gridinsoft rates the domain at 0 / 100, indicating maximal risk, and the site has been listed on a single security blocklist and actively blocked by the PhishDestroy service.
VirusTotal scans report three detections out of ninety‑three participating vendors, confirming the presence of malicious indicators, while AlienVault OTX records a single pulse referencing the domain. The nameservers kolton.ns.cloudflare.com and riya.ns.cloudflare.com confirm reliance on Cloudflare’s DNS infrastructure. The brand target identified is “argent,” and the scam type is classified as brand impersonation, suggesting the domain is being used to masquerade as an official argent service.
Current activity shows the domain taken offline, which may be a temporary takedown or an evasion tactic. Defenders should continue to block the domain at perimeter filters, monitor the associated IP range for related activity, and update threat intelligence feeds with the observed indicators. Further investigation is warranted to capture any residual payloads or command‑and‑control callbacks that may have been associated with the three VirusTotal detections, and to verify whether the domain re‑appears under a different host or with renewed SSL certificates.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | grokai-uk.com |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Bukti Terarsip
Bukti & Laporan EksternalIndependent lookups and source reports
PD-20260107-55C201 Recipient: abuse@namesrs.com Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.