zlovimaxai[.]com
“Zlovimax Ai - Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas”
Сводка доказательств
On 24 July 2026, the domain zlovimaxai.com was observed hosting a brand‑impersonation page targeting the financial service brand argent. The site’s HTML title, “Zlovimax Ai – Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas”, suggests a fraudulent trading‑AI offering and does not reference the impersonated brand, but the intelligence classification identifies it as a brand‑impersonation campaign. The domain was registered on 21 February 2026 through Name SRS AB and resolves to the Cloudflare edge address 172.67.168.9, which belongs to ASN 13335 (Cloudflare, Inc.) and is geolocated in the United States. No TLS certificate is presented; the site served HTTP without encryption, which is typical of quick‑turn scam deployments.
DNS is delegated to ariadne.ns.cloudflare.com and piotr.ns.cloudflare.com, confirming use of Cloudflare’s DNS infrastructure. The domain appears on a single security blocklist and is flagged by PhishDestroy, while VirusTotal scans show two of ninety‑three AV engines flagging the domain as malicious. AlienVault OTX reports the domain in one threat‑intel pulse, reinforcing its malicious reputation. Gridinsoft assigns a trust score of 1 out of 100, indicating an extremely low confidence rating.
The site is currently offline, limiting immediate verification of payloads or credential‑harvesting pages. Defenders should block the domain at network perimeter and DNS resolvers, monitor for any residual traffic to the associated IP address, and consider adding the IP to threat‑intel feeds. Ongoing collection of HTTP response headers, redirects, and potential payloads is recommended should the site become active again, as the current evidence is limited to registration and infrastructure attributes.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260107-C763C9- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Acceptable Use Policy (AUP): The domain zlovimaxai.com is engaged in phishing activities, which directly contravenes the AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the use of this domain for deceptive practices warrants immediate action.
Applicable Laws (SE):
Brottsbalken (Swedish Penal Code) Chapter 9, Section 1: Prohibits fraud, including any act of deception that results in financial loss to another party.
Lag (2005:59) om elektronisk kommunikation: Addresses unlawful interception and misuse of electronic communications, including phishing schemes.
Lag (2018:1174) om åtgärder mot penningtvätt och finansiering av terrorism: Enforces measures against activities that facilitate financial crimes, including those arising from phishing.
Regulatory Note: Non-compliance with the AUP and applicable laws may expose your organization to legal liability and regulatory scrutiny. Immediate action is recommended to mitigate potential risks.
Data Coverage
Сигналы безопасности
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | zlovimaxai.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание