auth[.]uniglobalgrp[.]co
“Uniglobal”
Riepilogo delle prove
auth.uniglobalgrp.co was registered on March 12 2026 through Tucows Domains Inc. The domain resolves to IP 172.67.129.106, which belongs to AS13335 Cloudflare, Inc., located in the United States. The site is served over HTTPS using a Google Trust Services / WE1 certificate and leverages Cloudflare's DNS (ULLIS.NS.CLOUDFLARE.COM, GUY.NS.CLOUDFLARE.COM). HTTP responses return status 200 and the server supports HTTP/3.
The landing page presents a title “Uniglobal” and mimics the visual style of the legitimate Argent brand, a known cryptocurrency wallet provider. The page is built with Vue.js and Highcharts, and includes Cloudflare Browser Insights scripts, indicating a modern front‑end stack. The content solicits cryptocurrency credentials, matching the observed “cryptocurrency” scam type. The Gridinsoft trust score of 0/100 and the fact that only one of ninety‑five VirusTotal scanners flagged the domain underscore the low reputation of the site.
Active security blocklists have already added auth.uniglobalgrp.co to three listings, and it is currently blocked by PhishDestroy, MetaMask, and SEAL. Despite these blocks, the site remains reachable and returns HTTP 200, confirming its operational status. The low trust score and the presence of brand impersonation suggest the infrastructure is intentionally concealed behind Cloudflare’s protection to evade takedown.
Defenders should add the domain to local block and sinkhole lists, monitor DNS queries for the associated Cloudflare nameservers, and enforce URL filtering for any references to the Argent brand. Incident response teams handling credential theft should treat any credentials submitted to this site as compromised. Continuous observation of the IP address 172.67.129.106 for related malicious activity is advised, as the hosting provider may be reused for additional impersonation campaigns.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260312-1C6048- Titolo della pagina acquisita
- Uniglobal
- Artefatto PDF
- Prova in PDF
Testo completo delle prove
Policy Violations: Participates in DNS Abuse Framework; explicitly recognizes phishing, malware, botnets, pharming, spam-as-vector as abuse requiring registrar action
Applicable Laws: Criminal Code §342.1 (unauthorized access), §380 (fraud)
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
8 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
VirusTotal
0 → 1
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of auth.uniglobalgrp.co · checked Mar 12, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo