Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is complaint@gname.com.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
aiinvest[.]cc
“Likefire: One-Stop Global Investment Platform | Forex | Commodities | Stocks | Indices | Cryptocurr…”
aiinvest.cc — Непроверенный. Олицетворение бренда: Coinbase; Тип мошенничества: Investment Scam. Сводка доказательств: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 1 alert; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Регистратор: Gname.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain aiinvest.cc has been identified as an active impersonation site targeting investment platforms, specifically mimicking a one-stop global trading service. Analysis confirms this as a brand impersonation threat under the category of investment scams, currently marked as offline. The site presented itself as a trading platform offering forex, commodities, stocks, indices, cryptocurrencies, gold, and oil under the fabricated brand name 'Likefire.' Infrastructure analysis reveals the domain was registered through Gname.com Pte. Ltd. and resolves to the IP address 188.114.96.3. It holds a Gridinsoft trust score of 0 out of 100, indicating high-risk classification. Security vendors on VirusTotal flagged the domain in 15 of 95 scans, while AlienVault OTX includes it in two distinct threat intelligence pulses. The domain appears on four security blocklists and is actively blocked by multiple threat protection systems, including MetaMask and PhishDestroy. The SSL certificate is issued by Let’s Encrypt, a common choice for both legitimate and malicious sites. As of the latest assessment, aiinvest.cc has been taken offline, though historical data suggests potential for reemergence under similar infrastructure. Organizations and individuals are advised to block the domain and associated IP at the network level. Security teams should monitor for related domains registered through the same registrar or resolving to the same IP range. Users who interacted with the site should review financial accounts for unauthorized activity and reset credentials for any linked services.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | aiinvest.cc |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of aiinvest.cc · checked Jun 26, 2026
Анализ конфигурации сайта
Доказательства и внешние отчеты
PD-20260609-24916B Recipient: complaint@gname.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание