Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@namecheap.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
investigbot[.]com
“InvestigBot – Innovative Solutions for CFD Investors”
investigbot.com — Não verificado. Tipo de golpe: Investment Scam. Resumo das evidências: VirusTotal 6/94 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, ESET, Kaspersky); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 73/100. Registrador: NameCheap.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies investigbot.com as an active credential-harvesting scam site designed to trick users into submitting login details under the guise of a threat intelligence tool. The domain mimics legitimate security services to deceive visitors into believing they are accessing a professional platform, when in reality, any inputted credentials are immediately compromised and likely sold on dark web markets or used for follow-on attacks. Users who interact with this site risk exposing corporate, personal, or financial account credentials to malicious actors.
This domain was flagged by 6 of 95 VirusTotal security vendors, registered on December 11, 2024, and hosted on IP 66.29.142.74 through NAMECHEAP INC with a Let's Encrypt SSL certificate. Its recent creation and low detection rate at time of analysis (6/95) suggest it is part of an emerging campaign, leveraging newly registered domains to evade early detection mechanisms. The use of a free SSL certificate further enhances its credibility deception, as visitors may assume the site is trustworthy due to the padlock icon in their browser.
If you visited investigbot.com, do not enter any credentials, personal information, or financial data. Immediately change passwords for any accounts you may have entered, enable multi-factor authentication on all critical accounts, and scan your device for malware using a reputable security tool. Report the domain to your IT security team or file a complaint with your national cybercrime unit. Monitor accounts closely for unauthorized access and consider using identity theft protection services if sensitive data was submitted. Avoid revisiting the site, as it remains active and poses an ongoing risk.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias · 7 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of investigbot.com · checked Mar 30, 2026
Evidências e relatórios externos
PD-20260329-CF34C2 Recipient: abuse@namecheap.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo