ailayer.xyz

Suspicious 172.67.68.20 En ligne
Last checked 2 hours, 15 minutes ago · Apr 24, 2026 5:42 AM UTC · First scanned Apr 24, 2026
Mature domain SSL valid Suspicious Malicious WHOIS hidden
0 Risk Score

Suspicious

Domain Age 953 days
Headers Grade F security
SSL Certificate Valid certificate
VT Score 0/0 engines
Blacklists 1 flagged
Wayback 0 snapshots

This site has been flagged as Suspicious

Have you been scammed by this site? Report it to help protect others.

3500000 € reported lost

1 victim reported financial losses on this domain

Report a loss

Collective Action

Join other victims to file a collective complaint against this domain. The more people join, the stronger the case. Your information is kept confidential and only shared with authorities if the action is formally submitted.

0
participants
0 €
total reported losses
0/5
threshold
Screenshot of ailayer.xyz

Screenshot by urlscan.io — click to enlarge

Server Location
Location
Toronto, Canada
IP
172.67.68.20
Hosting
Cloudflare, Inc.
Share: Twitter Facebook LinkedIn
Certified Report JSON CSV
Is this site safe?

Avoid this site. There are multiple red flags suggesting it may be fraudulent.

The domain owner uses WHOIS privacy protection, hiding their identity. **10 out of 91 security engines** on VirusTotal flag this site as malicious. No privacy policy or terms of service found. The site has poor security headers (grade F).

• Domain Age: 2.6 years ✗ WHOIS Privacy: Owner identity hidden • Registrar: NAMECHEAP INC ✓ SSL Certificate: Valid, expires in 70 days ✗ VirusTotal: 10/91 engines flag as malicious ✗ Legal Pages: No privacy policy or terms ✗ Security Headers: Grade F ✗ Web Archive: No archived snapshots
Found on 1 blacklist
+15
Missing SPF or DMARC
+5
Flagged by 4+ antivirus engines
+30
Poor security headers
+5
No privacy policy
+5
Multiple community scam reports
+15
Mature domain (1+ year)
-5
1 time scanned on ScamSandbox

Correlated domains

These domains share multiple infrastructure or registration signals with this domain — a pattern common in coordinated scam networks.

allopenwellness.com 2026-03-2…
Same Registrar
amin4ddaftar.com 2026-03-1…
Same Registrar
apkhokiplay7.xyz 2026-02-1…
Same Registrar
daluno.space 2025-08-2…
Same Registrar
fierocasa.com 2021-05-1…
Same Registrar

Domain Timeline

Info Warning Critical 6 events
Sep 13, 2023 Today
Domain Created

Domain ailayer.xyz was registered.

WHOIS
Domain Updated

Domain ailayer.xyz WHOIS record was updated.

WHOIS
SSL Certificate Issued

SSL certificate issued by Google Trust Services.

SSL Check
Flagged by VirusTotal

Flagged by 10 engines as malicious and 5 as suspicious on VirusTotal.

VirusTotal
SSL Certificate Expires

SSL certificate will expire.

SSL Check
Domain Expires

Domain ailayer.xyz is set to expire.

WHOIS
Domain Age
953 days old - Established domain
WHOIS Privacy
Registration details are hidden behind privacy protection
Email Security
SPF present, DMARC missing
Typosquatting
No typosquatting detected
Contact Info
Contact information found
Privacy Policy
No privacy policy detected
Redirects
1 redirect
Security Headers
F Grade
Security Score 0%
referrer_policy Not set
x_frame_options Not set
x_xss_protection Not set
permissions_policy Not set
x_content_type_options Not set
content_security_policy Not set
strict_transport_security Not set
cross_origin_opener_policy Not set
Missing: Strict-Transport-Security, Content-Security-Policy, X-Frame-Options, X-Content-Type-Options, Referrer-Policy, Permissions-Policy, X-XSS-Protection, Cross-Origin-Opener-Policy
Server: cloudflare Powered by: Next.js
SSL Certificate
Issuer Google Trust Services
Valid From N/A
Valid Until N/A
Days Until Expiry 70 days
Subject Alternative Names
ailayer.xyz *.ailayer.xyz
Redirect Chain
https://ailayer.xyz
Content Analysis

Trust Signals

✓ Contact ✓ Social ✗ Privacy Policy ✗ Terms

Threat Signals

— Login Form — Payment Form Urgency: 0 — Hidden Elements — Iframes
Domain Mindmap
ailayer.xyz
DNS
A: 172.67.68.20A: 104.26.1.160A: 104.26.0.160 MX: 10 mx1.privateemail.comMX: 10 mx2.privateemail.com NS: seamus.ns.cloudflare.com.NS: chan.ns.cloudflare.com.
Server
cloudflare CDN: Cloudflare
Technologies
React
Ports
80 (HTTP) 443 (HTTPS) 8080 (HTTP-alt) 8443 (HTTPS-alt)
Related
230 domains Cloudflare, Inc. Shared Hosting

Domain Relationships

Sources: urlscan.io · RapidDNS · HackerTarget Reverse IP · ipapi.co

Cloudflare, Inc. âš  Shared Hosting
7ed21b04c0dcde1c.eotica.com.br a3.h2.hitme.pl achmmindiachapter.org admin.5k.bluebez.com admin.ahun.bluebez.com admin.eotica.com.br affiliates.smsit.ai ahjili.com ai-pr-reviewer.cs-gateway.cloud ai.klientimpact.com aicpanel.smsit.ai allopenwellness.com amin4ddaftar.com antioquiatours.com api-global-staging.sopro.io api-service-pen-test.cs-gateway.cloud api.3.bluebez.com api.5k.bluebez.com api.awr.bluebez.com api.eotica.com.br api.peerreviewportal.com apkhokiplay7.xyz app.conexaopolitica.com.br app.peerreviewportal.com app.thepanoawards.com assets.eotica.com.br authornayan.com avantgardeconceptsllc.com bartlettpublications.com beachhouselayan.com belleetbio.com beta.hiperdex.com betterfieldservice.com bio-it.smsit.ai blog.eotica.com.br cache.org.uk cachezone.cache.org.uk cachezone2013.cache.org.uk cdn.corporationwiki.com cdn.hiperdex.com cdn.hitme.pl chembys.com clients.heavynode.com cloud.teamgames.io commerce.smsit.ai community.peerreviewportal.com conjurers.ca cpanel.conexaopolitica.com.br cpanel.newarmada.co.id cpcalendars.newarmada.co.id cpcontacts.fanqianglu.com create-it.smsit.ai daluno.space desa-api.tredibus.com dev-api.peerreviewportal.com devwww.hitme.pl digital.beachhouselayan.com digital.sociallay.in dispatch.cs-gateway.cloud dmp.beachhouselayan.com dns-speed.tail-f.de dwa.przedszkoleprzedborz.pl e.eotica.com.br ecertificate.cache.org.uk engmotorsport.com eotica.com.br equitable-igwm.com ezzyclothes.com fierocasa.com flave-air.com fountaintqt.specialdeal4us.com gateway.smsit.ai gatewayeducation.com.np gosentria.com guestwifi.bents.co.uk health.kishorechainani.com heavymeds.com help.readymage.com hiperdex.com hitme.pl homebug.com hr-it.smsit.ai hype-girl.com.au hyssa.com icinga.cabo.com image-tool.eotica.com.br interactone.net isabellescabinet.com jaylakstore.com jerukpurut.store jkz1hr-0m.myshopify.com joki.tehkawat.com justvitadeal.com kairecosmetics.com kaplaninternational.ca kiltmaster.com legacy.myevergreenehome.com luxuryzion.com m2.eotica.com.br mail.aurora-tax.pl mail.e-rolety24.pl mail.generatorgirland.eduzabawy.com mail.iidb.com.pl mail.phuproheat.pl mail.ptep.bprog.pl mail.researchspot.pl mail.terminybezspiny.pl mail.waw.beauty mail.wnetrzajaklubisz.pl mandiribola-alt1.space marivellehome.com markethaven.ai media.eotica.com.br medpoint.ee memecosmetics.fr monetizednow.com motivation.gg moyca.eu mta-sts.tiber.pl myevergreenehome.com mysql.hitme.pl newarmada.co.id newarmada.com.newarmada.co.id news.smsit.ai nieuws.pureflowshower.nl northlineexpress.com northumberlandcheese.co.uk nourbio100.com o2tracker.com old-admin.eotica.com.br origin.admin.eotica.com.br outliyr.com panel.cinfu.com pard.com parleysdieselperformance.com portal.sopro.io pre.eduardolosilla.es promo.cinfu.com pwa.interactone.net redirect.askstanley.ai residentnewsonline.com retail.5k.bluebez.com roseexplosion.com roshidermaglow.beauty russelldean.co.uk ruvirad.it.com sarraf.pro serius.tehkawat.com sharinghappiness.org shinerphoto.com shopdodesconto.online shopify.com skylarkluggage.com smtp.bip.instytutstratwojennych.pl sopro.io staging.peerreviewportal.com stamping.newarmada.co.id starperu.com static2.eotica.com.br stellenangebote.de store.rootsacademy.com storehypnos.com superva.smsit.ai support-it.smsit.ai svhec.org swissvisecaone.1wp.site t-i-e.co.il tambun.newarmada.co.id team400.ai thepanoawards.com thesolutiontailor.com torveta.space trustpilot.smsit.ai v2.cs-gateway.cloud valcasies.com vetaocampo.com.br wearnou.com webinar.smsit.ai webmail.conexaopolitica.com.br webmail.fanqianglu.com wellfound.org whastappa.cn wheelsinsuranceltd.com woodstairs.com worldmapsonline.com www.academyformindfulteaching.com www.achievebk8.com www.ahjili.com www.beachhouselayan.com www.beelinebrasil.com.br www.bents.co.uk www.bk-8up.biz www.bk8rp.com www.chronooo26.shop www.circuva.org www.cleverconsultinggroup.pl www.eduardolosilla.es www.geotechnika-gm.pl www.grandtournation.com www.h2.hitme.pl www.hitme.pl www.iotica.com.br www.kaplaninternational.ca www.lojaskala.com.br www.lucidcityrp.com www.m2.eotica.com.br www.nertz.in www.northlineexpress.com www.northumberlandcheese.co.uk www.outliyr.com.cdn.cloudflare.net www.parleysdieselperformance.com www.qushubi.com www.recruitment.newarmada.co.id www.roomonitor.com www.sicherheitsdienst-jobs.de www.skinvirtue.com.au www.sopro.io www.starperu.com www.tambun.newarmada.co.id www.trekcharge.store www.valcasies.com www.waw.beauty www.webmail.newarmada.co.id www.whastappa.cn www.wizardlabels.com www.woodstairs.com www.worldmapsonline.com www.xtremeoutback.com.au zielonypartner.pl zoom.smsit.ai
WHOIS Information
Registrar NAMECHEAP INC
Created 2023-09-13T12:21:25
Expires 2026-09-13T23:59:59
Updated 2025-09-01T12:20:41
Registrant Country IS
Name Servers
chan.ns.cloudflare.com seamus.ns.cloudflare.com
Port Scan
80 HTTP
443 HTTPS
8080 HTTP-alt
8443 HTTPS-a…

External Trust Scores

Average: 80.5%
61/100
Gridinsoft
61/100
Clean
PhishTank
Clean

Also check on:

2 sites checked. Scores are fetched directly from each platform.

Community Intelligence

Mixed

No community mentions found.

Sources checked: PhishTank
Threat Intelligence Sources
VirusTotal Clean
0/0 engines
View on VirusTotal →
AbuseIPDB Clean
0% confidence
PhishDestroy Low Risk
0 risk score
urlscan.io Clean
benign
Wayback Machine
First Seen N/A
Last Seen N/A
Total Snapshots 0
Google Index & SEO
Robots.txt Missing
Sitemap Missing
Index Score N/A

Community Reports 2

Phishing by FUCKASIAN SCAMMERS!!

SCAM!!!! Putain merde

Malware by Researcher Brian

Crypto Drainer and Malware is present on the website. On the protocol itself. The Code is suspicious and requires a Hacken and CertIK audit. Rug(exit scam is probable) activity on-chain has completely died and seemingly suspicious code is visible. Potential Malware is stored on chain via code (protocol level) requires heavy decompilation and tracing. If No action is taken by the "team". FBI and Interpol must deal with this as user losses exceed within the estimated amount 35million USD +

Money lost: 3500000.00 USD