grokai-uk[.]com
“Grok AI - Official Platform | AI Trading 2025 | Over 10,000 Reviews”
Сводка доказательств
Analysis of grokai-uk.com shows a recent registration (21 February 2026) through Name SRS AB and immediate resolution to the Cloudflare address 172.67.185.183, announced under ASN 13335 (Cloudflare, Inc.) in the United States. The domain presents the page title “Grok AI - Official Platform | AI Trading 2025 | Over 10,000 Reviews,” yet no TLS certificate is deployed, leaving the site unencrypted. Trust scoring from Gridinsoft rates the domain at 0 / 100, indicating maximal risk, and the site has been listed on a single security blocklist and actively blocked by the PhishDestroy service.
VirusTotal scans report three detections out of ninety‑three participating vendors, confirming the presence of malicious indicators, while AlienVault OTX records a single pulse referencing the domain. The nameservers kolton.ns.cloudflare.com and riya.ns.cloudflare.com confirm reliance on Cloudflare’s DNS infrastructure. The brand target identified is “argent,” and the scam type is classified as brand impersonation, suggesting the domain is being used to masquerade as an official argent service.
Current activity shows the domain taken offline, which may be a temporary takedown or an evasion tactic. Defenders should continue to block the domain at perimeter filters, monitor the associated IP range for related activity, and update threat intelligence feeds with the observed indicators. Further investigation is warranted to capture any residual payloads or command‑and‑control callbacks that may have been associated with the three VirusTotal detections, and to verify whether the domain re‑appears under a different host or with renewed SSL certificates.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260107-55C201- Заголовок сохранённой страницы
- Grok AI - Official Platform | AI Trading 2025 | Over 10,000 Reviews
- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Acceptable Use Policy (AUP): The domain grokai-uk.com is engaged in phishing activities, which constitutes a violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The ongoing phishing operations associated with this domain represent a clear breach of your TOS, which reserves the right to suspend or terminate services for any violations.
Applicable Laws (SE):
Brottsbalken (Swedish Penal Code) Chapter 9, Section 1: Addresses fraud and deception, making it illegal to deceive individuals for unlawful gain.
Lag (2005:59) om elektronisk kommunikation: Prohibits the use of electronic communication for fraudulent purposes, including phishing schemes.
Regulatory Note: Failure to take immediate action against this domain may result in regulatory scrutiny and potential liability under applicable laws. It is imperative to comply with your AUP and TOS to avoid further legal repercussions.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | grokai-uk.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание