unlimirxam[.]digital
“This website domain has been seized by Microsoft”
The domain unlimirxam.digital presents a threat by operating as an impersonation scam, displaying the page title "This website domain has been seized by Microsoft" to falsely claim association with Microsoft. This tactic is designed to deceive visitors into believing the site is an official Microsoft asset, potentially to harvest credentials or spread malware through a fake security warning.
Technical evidence confirms malicious activity. VirusTotal reports 22/95 detections. The domain is flagged by ADMINUSLabs, alphaMountain.ai, AlphaSOC, Antiy-AVL, and ArcSight Threat Intelligence, and appears on 2 blocklists. It was created on 2025-05-03 via registrar MarkMonitor Inc., hosted on IP 40.91.108.115 (Microsoft Azure Cloud, westus2 region). The SSL certificate is issued to Microsoft Corporation by Microsoft Azure RSA TLS Issuing CA 07. Nameservers are ns001.microsoftinternetsafety.net and ns002.microsoftinternetsafety.net.
The domain is currently DOWN/OFFLINE. Risk level is high, with GridinSoft trust at 0/100, ScamAdviser trust at 1/100, and a DOM risk score of 73. Despite being offline, the impersonation of Microsoft and high detection rate indicate a significant threat if reactivated.
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | www.noticeofpleadings.net |
malicious | Sinkholed |
| Cloudflare DNS | unlimirxam.digital |
malicious | Sinkholed |
| Hagezi Threat Feed | unlimirxam.digital |
malicious | Sinkholed |
| DigiCert UltraDNS | unlimirxam.digital |
malicious | Sinkholed |
| DNS4EU | unlimirxam.digital |
malicious | Sinkholed |
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive