Scam Detective
Domain

pdfdirect.co

First seen Mar 27, 2026

Suspicious
  • No SSL certificate
  • 1 community report from users

Campaign Intelligence

This cluster centers on 12 connected domains identified through shared infrastructure and registration patterns. The connected infrastructure includes 2 phone numbers (8305829060, 8665876946) with 0 FTC complaints. If you receive a call or text from any of these numbers, do not engage — hang up immediately and do not call back. Never provide personal information or make payments to unknown callers. Do not click links to any of the flagged domains. If you have visited one, check your accounts f...

Details

Registrar
Amazon Registrar, Inc.
Registration Date
9/16/2025
First Seen
3/27/2026

Related Domains

Community Reports

I am reporting a coordinated international subscription fraud network involving multiple interconnected domains, payment processors, and shell entities. Primary Incident: I was charged $49.90 after visiting https://www.vidiofy.co, which presents itself as an AI video generation service. The charge appeared on my statement as: “PICMAGIC*N+18********* IRVINE, CA” The payment/receipt processor is: https://www.picmagic.co [email protected] Phone: ###-###-#### Refund requests are routed to: https://www.pixgenie.net [email protected] Phone: ###-###-#### Fraud Mechanism: This operation uses a “subscription trap” model: • A low-cost or “trial” entry point • Automatically converts into a $49.90 recurring charge • Disclosure is unclear or not presented in a conspicuous manner • This appears to violate FTC guidelines and the Restore Online Shoppers’ Confidence Act (ROSCA) Failure of Service: Despite being charged, the service did NOT deliver a usable product. • The generated video file is 0:00 seconds in length • No functional output was provided • Refund was denied despite non-delivery Deceptive Practices: • Customer service phone number (###-###-####) rings, auto-connects, and immediately disconnects • Multiple conflicting jurisdictions listed (Hong Kong, Netherlands, U.S.) • Entities include Guldex B.V. (Netherlands) and others with questionable or unverifiable addresses • Evidence of “burner” domains used to rotate operations Network Indicators: The same phone number (###-###-####) is used across multiple domains, including: picmagic.co pixgenie.net grungrove.com getmobi.ai pdfdirect.co picmuse.co teamshopec.com bolonzi.com oceanmhine.com gleamgrasp.c [BBB Scam Type: Online Purchase] [Business: picmagic.co] [Location: MA, USA- 02724]

1 day ago

Share Your Experience

What's Your Exposure?

Know your risk exposure to this message with a Thorough Analysis. It returns a detailed report covering the complaint history, your data breach exposure, related scam entities, and risk signals tied to this email message. Check the box and enter your email address now.

NordProtect Identity theft monitoring and recovery

NordProtect watches for your personal info on the dark web, monitors your credit, and covers up to $1M in identity theft insurance.