DANGEROUS

Phishing site — do not log in

Flagged on major browser safety blocklists as social engineering. This page looks designed to steal credentials. Don't log in — and if you already did, change the password anywhere you reused it and turn on two-factor authentication.

Security Review

Is immuai.live legit or a scam?

Our verdict:Dangerous· 8/100

Fake Immunefi airdrop phishing site on a 6-day-old typosquat domain flagged for social engineering and wallet scams.

immuai.liveScanned 12d ago
0
Trust score
DANGEROUS
Heuristics 0·MT 12
Category tags
phishing#Phishing#Fake Giveaway#Airdrop Drainer#Crypto Fraud92% MT confidence
Warning signals (1)

These checks passed — but they don't clear the site. A clean antivirus result, valid SSL, and a calm server only mean it isn't hosting malware; they say nothing about whether the business is real. This verdict is based on the site's conduct and content, not a malware detection.

View density

Analysis Summary

Threat Intelligence
0/92
Engines flagged this URL
Domain Age
6 days old
Registered May 18, 2026
MT Intelligence
Dangerous
Critical likelihood · 92% confidence

MT Intelligence

Advanced threat intelligence
MT Security Analyst
Critical scam likelihoodengineMT · Guardiantrust12/100
MT AgentLive web researchVisual inspectionNetwork correlation
0%
Confidence
The site presents itself as an airdrop claim page for a token called $IAI but is a direct clone and typosquat of the legitimate immunai.com biotech site. Browser blocklists have already flagged it for social engineering, and independent reports confirm it pushes fake Immunefi phishing campaigns. The domain was registered only six days ago through a registrar frequently linked to scam infrastructure. Visual checks show a 403 error page, which is common when the scam content is served conditionally or blocked in some regions. These signals together indicate a high-risk impersonation campaign rather than any legitimate project.
Full dossier
Analysis complete

Page Content

The page promotes a fake $IAI airdrop that asks users to connect a wallet to claim tokens, a classic credential-harvesting pattern. No legitimate business content or company information is present.

Infrastructure

Hosted on Cloudflare IPs with valid SSL but zero global traffic ranking and a brand-new registration. The IP itself shows no abuse history, yet the domain-level signals override this.

Domain History

Registered just 6 days ago via NiceNIC with no privacy protection and no matching business entity records. The name closely mimics the established immunai.com domain.

Web Reputation

Multiple scam databases list the domain as an active phishing site targeting crypto users through fake airdrops.

Risk Factors
5
  • Domain registered only 6 days ago with no business history
  • Browser blocklists flag the site for social engineering
  • Confirmed clone and typosquat of immunai.com promoting fake airdrops
  • PhishDestroy reports identify it as an active Immunefi phishing campaign
  • Registrar NiceNIC has a documented high association with scam domains
Positive Signals
2
  • Valid SSL certificate issued by Let's Encrypt
  • Hosting IP shows zero abuse reports
AI Recommendation
Do not visit the site or connect any wallet. If you already interacted with it, revoke approvals immediately and monitor your accounts.
Scam network detected
1 linked domain correlated

Domain is a confirmed typosquat and clone of immunai.com used for fake airdrop phishing.

immunai.com
Next-gen fraud intelligence
Evidence-backedCross-checked

Website Preview

Screenshot of immuai.live
LIVE RENDER
immuai.live

Automated page render — captured in a safe sandbox. What an ordinary visitor would see when loading the site.

Visual Screenshot Analysis

We capture a fresh screenshot of the live page and ask a vision model to look for scam visual patterns — fake trust badges, countdown timers, overlay pop-ups, and visual clones of legitimate brands.

0
/ 100
No visual red flags

No scam visual patterns detected

Standard 403 Forbidden server error page with no scam indicators or suspicious elements visible.

Visual risk0/100

Web Research Findings

Our live research agent queries scam-report databases, consumer-review sites, news coverage, and general web search for immuai.live, then cross-checks business-registration records and look-alike domain patterns. Everything below is pulled from what it actually found.

Domain age
6 days
Registered May 2026
Business registration
No public record found
Could not match the site to a registered company — common for small sites.
Clone check
Clones immunai.com
The page impersonates a well-known brand's site.
Typosquat check
Typosquat of immunai.com
Deliberate misspelling of a real brand's domain.
Web mentions
2 scam reports
Key findings
6 headline facts from open-web research
  • Domain immuai.live registered May 18, 2026 (6-7 days old) via NICENIC INTERNATIONAL GROUP CO., LIMITED
  • Homepage content: "$IAI Airdrop - The airdrop of $IAI is here! The claims for IAI are officially LIVE ! Connect your wallet, check your allocation and claim your tokens."
  • Flagged by PhishDestroy as fake Immunefi phishing / airdrop scam; 3/95 VirusTotal detections; listed in 3 blocklists (MetaMask, PhishDestroy, SEAL)
  • Listed as IOC on ThreatFox (abuse.ch) for domain:immuai.live
  • Registrar NiceNIC noted in reports for high association with scam domains (>90% illegal content per PhishDestroy analysis)
  • Resolves to Cloudflare IPs; HTTP 403 on some checks; no backlinks or established history per Ahrefs/others
Scam reports (2)
Direct quotes from public scam databases, forums, and news.
  • phishdestroy.ioopen

    "immuai.live is actively pushing fake Immunefi phishing scams . Zero detections on VirusTotal but domain registered May 18, 20."

  • phishdestroy.ioopen

    "PhishDestroy identifies immuai[.]live as an active fake Immunefi phishing domain currently categorized as generic_phishing"

Impersonation / typosquat
Typosquat of immunai.com

Name closely matches Immunai (biotech AI company at immunai.com); site promotes fake $IAI airdrop impersonating Immunefi bug bounty platform

Research summary
Narrative write-up from our AI analyst, grounded on the facts above

PhishDestroy reports confirm immuai.live is actively used for fake Immunefi phishing and airdrop scams. The same source notes the domain was registered only days ago and highlights the registrar's frequent involvement with malicious sites. No positive reviews or legitimate business records were located.

Scam Network Intelligence

Cross-site correlation

This site shares signals with a broader cluster

Critical cluster

Many scams don't operate alone. We correlate third-party scripts, hosting infrastructure, brand-impersonation signals, and the AI evidence package to detect when a site is part of a broader scam network.

Suspicion score
0/100
ClearLowModerateHighCritical
Evidence (4)
  • Evidence confirms this site is a clone of immunai.com.
  • Domain is a typosquat of immunai.com.
  • Short name on low-trust .live TLD — over-represented on scam farms.
  • Domain is only 6 days old and already carries multiple network-level red flags.
Linked signals (3)
Clone of immunai.comTyposquat of immunai.comPattern · LOW Trust TLD

Antivirus Engines

Detection matrix · live
1 engine flagged this URL

We cross-check every URL against our antivirus network of 92 malware and blacklist engines. Each detection is listed below by engine name — even a single hit is a meaningful signal.

0Malicious1Suspicious57Harmless92Engines
0
of 92
Fortinet
Suspicious· spam

1 antivirus engine flagged this URL. Even a single detection is a meaningful signal — treat this site with extra caution and avoid entering credentials, payment info, or downloading any files.

Security Scans

Blacklist Check
This URL appears on threat lists

Detected threat categories: SOCIAL_ENGINEERING.

Domain & Encryption

Domain History
Age6 days old
RegistrarNICENIC INTERNATIONAL GROUP CO., LIMITED
RegisteredMay 18, 2026
ExpiresMay 18, 2027
Owner privacyVisible
Encryption Certificate
StatusValid
ProtocolTLSv1.3
IssuerLet's Encrypt · E7
ExpiresAug 16, 2026 (83d)
Self-signedNo
Hosting & Technology
HostingCloudflare, Inc.
Server locationUS

Server Reputation

Abuse Intelligence
Confidence score0%
Reports on file0
ISPCloudflare, Inc.
Usage typeContent Delivery Network

Scam-Type Likelihood

4 scam-type patterns detected
Scam-Type Likelihood

0 of 13 categories showed signals

We check every URL against 13 distinct scam categories so the verdict tells you not just how risky the page is, but what kind of risk it carries. Each meter pulls from page signals, web reports, our AI analyst, vision, and the scam-network cluster — not from raw AV labels.

Top match: Phishing
Phishing
High likelihood
0/100
  • Domain is a typosquat of immunai.com.
  • Google Safe Browsing flagged this as social engineering / phishing.
  • AI analyst tagged this as phishing.
Crypto Fraud
Moderate likelihood
0/100
  • AI analyst tagged this as crypto fraud / wallet-drainer.
  • AI analyst tagged this as an airdrop / drainer.
Brand Impersonation
Moderate likelihood
0/100
  • Domain is a typosquat of immunai.com.
  • Clustered with known brand-impersonation infrastructure.
Fake Giveaway
Low-level signals
0/100
  • AI analyst tagged this as a giveaway / airdrop / lottery scam.

Phishing site — act fast

This page shows signs of attempting to steal credentials or impersonate a trusted brand.

  • Do not interact with immuai.live

    Do not enter credentials, deposit money, download files, or install browser extensions from this site.

  • If you already typed your password — change it now

    Change the password on the legitimate site and anywhere else you re-used it. Turn on two-factor authentication. Review recent account activity.

  • Report the phishing URL

    APWG (Anti-Phishing Working Group) accepts phishing reports at reportphishing@apwg.org. Google Safe Browsing reports help protect other users.

    Open
  • Get help on the forum

    MalwareTips members can help you assess damage and next steps.

    Open

Reputation Sources

How this domain rates across independent threat-intelligence and blocklist providers.

Google Safe Browsing
ListedCheck ↗
VirusTotal
ListedCheck ↗
AbuseIPDB
Not listedCheck ↗

Safety FAQ

Common questions about this site, answered from the scan data on this page. These are auto-generated — not hand-written — so they always match the underlying report.

  • Our automated security review flags immuai.live as dangerous. Multiple threat indicators were detected — treat the site as a scam until proven otherwise.

Final Verdict

0
Trust / 100
Final Verdict·immuai.live
DANGEROUS

This is a fake $IAI airdrop phishing site impersonating Immunai and Immunefi. Our verdict is malicious because the domain is only 6 days old, carries social-engineering blocklist flags, and is confirmed as a clone promoting wallet-draining scams.

Do not visit the site or connect any wallet. If you already interacted with it, revoke approvals immediately and monitor your accounts.

AV engines
92
MT passes
2
Net signals
3
Scan another URL
Security review completemalwaretips.com/url-scan
Recently scanned

Other Dangerous reports

Browse all reports
Community review

User reviews & comments(0)

Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.

Loading…
Loading comments…
Scanned by
JackStaff
This report is generated automatically by combining threat intelligence, domain signals, and an AI security analyst. It is informational, not legal advice. Always use your own judgement before sharing personal information or money online.